First published: Tue Mar 04 2025(Updated: )
in OpenHarmony v5.0.2 and prior versions allow a local attacker cause information leak through out-of-bounds read.
Credit: scy@openharmony.io
Affected Software | Affected Version | How to fix |
---|---|---|
OpenHarmony | <5.0.2 | |
>=4.1<=5.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-20042 has been classified as a medium severity vulnerability due to the potential for information leakage.
To fix CVE-2025-20042, update your OpenHarmony to version 5.0.3 or later where the vulnerability is patched.
CVE-2025-20042 affects all versions of OpenHarmony up to and including version 5.0.2.
CVE-2025-20042 is classified as an out-of-bounds read vulnerability that can lead to information leakage.
CVE-2025-20042 requires local access to exploit, making it less likely to be exploited remotely.