CNNVD-202508-899 Information

CNNVD ID

CNNVD-202508-899

CVE-2025-27128

  • CNNVD Published: 2025-08-11

Description (Chinese)

OpenHarmony是中国开放原子(OpenAtom)基金会的一种鸿蒙操作系统的开源项目。 OpenHarmony v5.0.3及之前版本存在资源管理错误漏洞,该漏洞源于tcb中释放后重用,可能导致执行任意代码。

Description (English)

Open Harmony is an open-source project of the OpenAtom Foundation in China for a luminous operating system. Open Harmony v. 5.0.3 and previous versions had an error in resource management, which originated in re-use after release in tcb and could lead to the enforcement of arbitrary codes.

Hazard Level

Medium

Vulnerability Type

资源管理错误

Affected Vendor

开放原子

Published

2025-08-11

Last Modified

2026-02-24

References

https://gitee.com/openharmony/security/blob/master/zh/security-disclosure/2025/2025-07.md https://access.redhat.com/security/cve/cve-2025-27128

Patch

https://gitee.com/openharmony/security/blob/master/zh/security-disclosure/2025/2025-08.md

Share on: