CVE-2025-27242: Ssecurity_component_manager has an improper input vulnerability
Published Jun 8, 2025
·Updated
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through improper input.
Affected Software
1 affected component
Openatom Openharmony<=5.0.3
Event History
Jun 8, 2025
CVE Published
via MITRE·11:47 AM
Data Sourced
via MITRE·11:47 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·12:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-27242?
CVE-2025-27242 is classified as a denial of service (DoS) vulnerability.
2
How do I fix CVE-2025-27242?
To fix CVE-2025-27242, update to OpenHarmony version 5.0.4 or later which addresses the vulnerability.
3
What systems are affected by CVE-2025-27242?
CVE-2025-27242 affects OpenHarmony versions 5.0.3 and prior.
4
What type of attack does CVE-2025-27242 facilitate?
CVE-2025-27242 allows a local attacker to cause a denial of service through improper input.
5
Can CVE-2025-27242 be exploited remotely?
CVE-2025-27242 requires local access to exploit, thus it cannot be exploited remotely.