in OpenHarmony v5.0.2 and prior versions allow a local attacker cause information leak through out-of-bounds read bypass permission check.
The product stores sensitive information without properly limiting read or write access by unauthorized actors.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://gitee.com/openharmony/security/blob/master/zh/security-disclosure/2025/2025-03.md | vendor advisory |