First published: Fri Feb 07 2025(Updated: )
in OpenHarmony v4.1.2 and prior versions allow a local attacker cause the common permission is upgraded to root and sensitive information leak through buffer overflow.
Affected Software | Affected Version | How to fix |
---|---|---|
Openharmony Openharmony | <4.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-0303 is considered a high severity vulnerability due to its potential for local exploitation and root privilege escalation.
To fix CVE-2025-0303, upgrade OpenHarmony to version 4.1.3 or later.
CVE-2025-0303 affects OpenHarmony versions up to and including 4.1.2.
A local attacker can exploit CVE-2025-0303 to upgrade common permissions to root and leak sensitive information.
CVE-2025-0303 is a local vulnerability, requiring access to the system for exploitation.