CVE-2025-22886: distributeddatamgr_udmf has a memory leak vulnerability
Published May 6, 2025
·Updated
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through missing release of memory.
Affected Software
2 affected components
OpenHarmony OpenHarmony<5.0.3
Openatom Openharmony<=5.0.3
Event History
May 6, 2025
CVE Published
via MITRE·09:03 AM
Data Sourced
via MITRE·09:03 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-22886?
CVE-2025-22886 is categorized as a denial-of-service vulnerability due to missing memory release.
2
How do I fix CVE-2025-22886?
To remediate CVE-2025-22886, upgrade to a version of OpenHarmony later than v5.0.3.
3
What versions of OpenHarmony are affected by CVE-2025-22886?
OpenHarmony versions v5.0.3 and earlier are affected by CVE-2025-22886.
4
What kind of attack does CVE-2025-22886 enable?
CVE-2025-22886 allows a local attacker to perform a denial-of-service attack.
5
Is CVE-2025-22886 a local or remote vulnerability?
CVE-2025-22886 is a local vulnerability, requiring local access to exploit.