CVE-2025-58298Stack-based Buffer Overflow in Huawei Harmonyos

Severity
5.5MEDIUMNVD
CNA7.3
EPSS
0.0%
top 98.99%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 11

Description

Data processing error vulnerability in the package management module. Successful exploitation of this vulnerability may affect availability.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages2 packages

CVEListV5huawei/harmonyos5.0.1, 5.1.0+1
NVDhuawei/harmonyos5.0.1, 5.1.0+1

🔴Vulnerability Details

2
GHSA
GHSA-jjch-4pq3-mv33: Data processing error vulnerability in the package management module2025-10-11
CVEList
CVE-2025-58298: Data processing error vulnerability in the package management module2025-10-11
CVE-2025-58298 — Stack-based Buffer Overflow in Huawei | cvebase