CVE-2025-0304
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Feb 7, 2025
Updated: Feb 11, 2025
CWE ID 416
Summary
CVE-2025-0304 is a vulnerability affecting OpenHarmony version 4.1.2 and earlier releases. A local attacker can exploit this issue by inducing a use-after-free condition, leading to common permission being upgraded to root. This escalation of privileges enables the attacker to gain unauthorized access to sensitive information. The vulnerability poses a serious risk, making it essential for users to promptly apply the available patches.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share