Impact
This vulnerability involves an out-of-bounds read in the graphics module of HarmonyOS. An attacker who can trigger the flaw could read memory beyond allocated bounds, leading to application crashes and system unavailability.
Affected Systems
Huawei HarmonyOS version 6.0.0 is affected. The vulnerability is present in the graphics module of this operating system release. No other versions were identified in the data.
Risk and Exploitability
The CVSS score of 5.9 indicates moderate severity. The EPSS score is below 1%, suggesting a low exploitation likelihood. The vulnerability is not listed in the KEV catalog. Attackers would need the ability to provoke the graphics module to perform the out-of-bounds read, implying that local privilege or remote code execution via an interface that processes graphics data may be required. No public exploit has been documented.
OpenCVE Enrichment