Impact
Buffer overflow in the HDC module of Huawei HarmonyOS can enable the application to crash when it processes malformed input. The weakness corresponds to CWE‑120 and CWE‑122 and is limited to a loss of service; no confidentiality or integrity compromise is witnessed in the provided description.
Affected Systems
The vulnerability affects Huawei HarmonyOS version 6.0.0, as deployed across consumer devices, laptops, and wearables. The affected component is the HDC module.
Risk and Exploitability
The CVSS base score of 6.9 classifies the issue as medium severity, while the EPSS figure of less than 1 % indicates a very low probability of exploitation. The issue has not been catalogued in the CISA KEV list. The exact attack vector is not specified, but the buffer overflow suggests exploitation via the HDC module; it may be triggered by malformed data from a local or connected source, though remote execution is not confirmed by the description.
OpenCVE Enrichment