CVE-2025-31173Improper Handling of Insufficient Permissions or Privileges in Huawei Harmonyos

Severity
6.5MEDIUMNVD
CNA8.8
EPSS
0.0%
top 89.74%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 7

Description

Memory write permission bypass vulnerability in the kernel futex module Impact: Successful exploitation of this vulnerability may affect service confidentiality.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:NExploitability: 2.0 | Impact: 4.0

Affected Packages2 packages

CVEListV5huawei/harmonyos5.0.0
NVDhuawei/harmonyos5.0.0

🔴Vulnerability Details

2
CVEList
CVE-2025-31173: Memory write permission bypass vulnerability in the kernel futex module Impact: Successful exploitation of this vulnerability may affect service confi2025-04-07
GHSA
GHSA-435f-w5x3-q9jc: Memory write permission bypass vulnerability in the kernel futex module Impact: Successful exploitation of this vulnerability may affect service confi2025-04-07
CVE-2025-31173 — Huawei Harmonyos vulnerability | cvebase