Input Verification Vulnerability in Huawei Compression Module
CVE-2025-66324

8.4HIGH

Key Information:

Vendor

Huawei

Status
Vendor
CVE Published:
8 December 2025

What is CVE-2025-66324?

An input verification vulnerability has been identified in Huawei's compression and decompression module, which may lead to compromises in application data integrity. Successful exploitation of this flaw could allow attackers to manipulate compressed data, potentially resulting in unauthorized access or data corruption. It is crucial for users to ensure their systems are updated and secure against such vulnerabilities to maintain data integrity and application reliability.

Affected Version(s)

HarmonyOS 5.1.0

HarmonyOS 5.0.1

References

CVSS V3.1

Score:
8.4
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-66324 : Input Verification Vulnerability in Huawei Compression Module