CVE-2025-58287Use After Free in Huawei Harmonyos

Severity
5.5MEDIUMNVD
CNA7.8
EPSS
0.0%
top 99.48%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 11

Description

Use After Free (UAF) vulnerability in the office service. Successful exploitation of this vulnerability may affect service confidentiality.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 1.8 | Impact: 3.6

Affected Packages2 packages

CVEListV5huawei/harmonyos5.0.1, 5.1.0+1
NVDhuawei/harmonyos5.0.1, 5.1.0+1

🔴Vulnerability Details

2
CVEList
CVE-2025-58287: Use After Free (UAF) vulnerability in the office service2025-10-11
GHSA
GHSA-x9jm-9gqg-5g65: Use After Free (UAF) vulnerability in the office service2025-10-11
CVE-2025-58287 — Use After Free in Huawei Harmonyos | cvebase