Unrated severityNVD Advisory· Published Mar 16, 2026· Updated Mar 16, 2026
arkcompiler_ets_runtime has a type confusion vulnerability
CVE-2025-25277
Description
in OpenHarmony v5.1.0 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through using incompatible type. This vulnerability can be exploited only in restricted scenarios.
Affected products
2- Range: <=5.1.0
- OpenHarmony/OpenHarmonyv5Range: v5.0.3
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.