CVE-2025-27534

CVSS 3.1 Score 3.3 of 10 (low)

Details

Published Apr 7, 2025
CWE ID 125

Summary

CVE-2025-27534 is a newly disclosed vulnerability affecting OpenHarmony v5.0.2 and earlier versions. This issue permits a local attacker to trigger a Denial of Service (DoS) condition due to missing memory release in the software. By exploiting this vulnerability, an attacker can cause the system to become unresponsive or crash, leading to service disruptions. The exact impact of the DoS condition may vary depending on the specific use case and configuration of the affected OpenHarmony installation. It is recommended that users upgrade to a patched version of OpenHarmony as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share