VendorsOpenAtomopenharmonyall versions
Vulnerabilities

OpenAtom OpenHarmony

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

156CVEs
CVE-2025-20011
Communication Dsoftbus has a memory leak vulnerability
Published 2025-03-04 · Analyzed
5.5EPSS 0.001
CVE-2025-20021
Arkcompiler Ets Runtime has an out-of-bounds read vulnerability
Published 2025-03-04 · Analyzed
5.5EPSS 0.001
CVE-2025-22443
Arkcompiler Ets Runtime has an out-of-bounds read vulnerability
Published 2025-03-04 · Analyzed
5.5EPSS 0.001
CVE-2025-22837
Arkcompiler Ets Runtime has a NULL pointer dereference vulnerability
Published 2025-03-04 · Analyzed
5.5EPSS 0.001
CVE-2025-21089
Arkcompiler Ets Runtime has an out-of-bounds read vulnerability
Published 2025-03-04 · Analyzed
5.5EPSS 0.001
CVE-2025-23418
Arkcompiler Ets Runtime has an out-of-bounds read vulnerability
Published 2025-03-04 · Analyzed
5.5EPSS 0.001
CVE-2025-21097
Arkcompiler Ets Runtime has a NULL pointer dereference vulnerability
Published 2025-03-04 · Analyzed
5.5EPSS 0.001
CVE-2025-22847
Arkcompiler Ets Runtime has an out-of-bounds read vulnerability
Published 2025-03-04 · Analyzed
5.5EPSS 0.001
CVE-2025-22841
Arkcompiler Ets Runtime has an out-of-bounds read vulnerability
Published 2025-03-04 · Analyzed
5.5EPSS 0.001
CVE-2024-22177
Audio has an improper preservation of permissions vulnerability
Published 2024-04-02 · Analyzed
5.5EPSS 0.001
CVE-2023-47216
Liteos-A has a missing release of resource vulnerability
Published 2024-01-02 · Modified
5.5EPSS 0.001
CVE-2023-49602
Arkui has a type confusion vulnerability
Published 2024-03-04 · Analyzed
5.5EPSS 0.001
CVE-2025-25217
arkui_ace_enginehas a NULL pointer dereference vulnerability
Published 2025-06-08 · Analyzed
5.5EPSS 0.001
CVE-2025-20063
arkui_ace_engine has a type confusion vulnerability
Published 2025-06-08 · Analyzed
5.5EPSS 0.001
CVE-2025-23235
arkcompiler_ets_runtime has an out-of-bounds write vulnerability
Published 2025-06-08 · Analyzed
5.5EPSS 0.001
CVE-2025-21082
arkui_ace_engine has a type confusion vulnerability
Published 2025-06-08 · Analyzed
5.5EPSS 0.001
CVE-2025-27242
Ssecurity_component_manager has an improper input vulnerability
Published 2025-06-08 · Analyzed
5.5EPSS 0.001
CVE-2025-26691
telephony_call_manager has an improper preservation of permissions vulnerability
Published 2025-06-08 · Analyzed
5.5EPSS 0.001
CVE-2025-27247
Pasteboard has an improper preservation of permissions vulnerability
Published 2025-06-08 · Analyzed
5.5EPSS 0.001
CVE-2025-27563
security_access_token has an improper preservation of permissions vulnerability
Published 2025-06-08 · Analyzed
5.5EPSS 0.001
CVE-2025-26693
security_access_token has an improper preservation of permissions vulnerability
Published 2025-06-08 · Analyzed
5.5EPSS 0.001
CVE-2025-24844
communication_dsoftbus has a missing release of memory vulnerability
Published 2025-08-11 · Analyzed
5.5EPSS 0.001
CVE-2025-27562
communication_dsoftbus has a missing release of memory vulnerability
Published 2025-08-11 · Analyzed
5.5EPSS 0.001
CVE-2025-27536
arkcompiler_ets_runtime has a type confusion vulnerability
Published 2025-08-11 · Analyzed
5.5EPSS 0.001
CVE-2025-26690
communication dsoftbus has a NULL pointer vulnerability
Published 2025-08-11 · Analyzed
5.5EPSS 0.001
CVE-2025-25212
pasteboard has an improper input vulnerability
Published 2025-08-11 · Analyzed
5.5EPSS 0.001
CVE-2025-24925
applications_settings has a missing release of memory vulnerability
Published 2025-08-11 · Analyzed
5.5EPSS 0.001
CVE-2025-24493
kernel_liteos_a has a race condition vulnerability
Published 2025-06-08 · Analyzed
5.5EPSS 0.001
CVE-2025-20081
Communication Dsoftbus has an UAF vulnerability
Published 2025-03-04 · Analyzed
5.3EPSS 0.002
CVE-2025-20024
Arkcompiler Ets Runtime has an integer overflow vulnerability
Published 2025-03-04 · Analyzed
5.3EPSS 0.002
CVE-2022-41686
Out-of-bound memory read and write in /dev/mmz_userdev device driver. The impact depends on the privileges of the attacker. The unprivileged process run on the device could read out-of-bound memory leading sensitive to information disclosure. The proc ...
Published 2022-10-14 · Modified
5.1EPSS 0.003
CVE-2022-41802
Kernel subsystem in kernel_liteos_a has a kernel stack overflow vulnerability when call SysClockGetres.
Published 2022-12-08 · Modified
4.0EPSS 0.002
CVE-2023-49142
multimedia audio has a UAF vulnerability
Published 2024-01-02 · Modified
4.0EPSS 0.002
CVE-2024-31071
Arkcompiler Ets Runtime has a type confusion vulnerability
Published 2024-07-02 · Modified
3.3EPSS 0.001
CVE-2024-36278
Arkcompiler Ets Runtime has a type confusion vulnerability
Published 2024-07-02 · Modified
3.3EPSS 0.001
CVE-2025-26474
communication_ipc an improper input validation vulnerability
Published 2026-03-16 · Analyzed
3.3EPSS 0.001
← Prev4 / 4