First published: Tue Mar 04 2025(Updated: )
in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through NULL pointer dereference.
Credit: scy@openharmony.io
Affected Software | Affected Version | How to fix |
---|---|---|
OpenHarmony Ets Runtime | <5.0.2 | |
>=4.1.0<=5.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-21097 has a high severity rating due to its potential to cause denial of service through a NULL pointer dereference.
To fix CVE-2025-21097, update the OpenHarmony Ets Runtime to a version later than 5.0.2.
Any system running OpenHarmony Ets Runtime version 5.0.2 or earlier is vulnerable to CVE-2025-21097.
CVE-2025-21097 allows a local attacker to cause a denial-of-service (DoS) condition.
CVE-2025-21097 was disclosed in March 2025.