Use After Free Vulnerability in Huawei Office Service
CVE-2025-58287

7.8HIGH

Key Information:

Vendor

Huawei

Status
Vendor
CVE Published:
11 October 2025

What is CVE-2025-58287?

A Use After Free (UAF) vulnerability in Huawei's Office Service allows attackers to exploit memory management issues. This exploitation can lead to unauthorized access to sensitive information, undermining service confidentiality. System administrators are advised to monitor for unusual activity and apply relevant patches as soon as they are available to mitigate potential risks associated with this vulnerability.

Affected Version(s)

HarmonyOS 5.1.0

HarmonyOS 5.0.1

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-58287 : Use After Free Vulnerability in Huawei Office Service