CVE Details
Basic Information
| Title | CVE-2025-54627 |
|---|---|
| Type | cve |
| Published | 2025-08-06T02:08:28.378Z |
| Modified | 2025-08-06T02:08:28.378Z |
Product Information
| Vendor | Huawei |
|---|---|
| Product | HarmonyOS |
| Version | 5.1.0 |
CVSS Information
| Base Score | 8.8 (HIGH) |
|---|---|
| Attack Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
AI Analysis
| AI Description | An out-of-bounds write vulnerability in the Skia module could allow unauthorized modifications to memory, potentially leading to data leaks or unauthorized access, affecting service confidentiality. |
|---|---|
| AI Severity | High |
| AI Vendor | Huawei |
| AI Product | HarmonyOS |
| AI Version | 5.1.0, 5.0.1 |
Affected Products
- Huawei HarmonyOS 5.1.0
- Huawei HarmonyOS 5.0.1
Additional Information
| CWE List | CWE-787 |
|---|---|
| Source | huawei |
Description
Out-of-bounds write vulnerability in the skia module.
Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Impact: Successful exploitation of this vulnerability may affect service confidentiality.