CVE-2025-0304

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Feb 7, 2025
Updated: Feb 11, 2025
CWE ID 416

Summary

CVE-2025-0304 is a vulnerability affecting OpenHarmony version 4.1.2 and earlier releases. A local attacker can exploit this issue by inducing a use-after-free condition, leading to common permission being upgraded to root. This escalation of privileges enables the attacker to gain unauthorized access to sensitive information. The vulnerability poses a serious risk, making it essential for users to promptly apply the available patches.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share