Impact
The flaw is an out-of-bounds read in the graphics module of Huawei HarmonyOS. It can cause application crashes or system instability, leading to a loss of availability. The weakness corresponds to CWE‑680.
Affected Systems
The vulnerability exists in Huawei’s HarmonyOS and may affect any device that runs the impacted graphics driver, including consumer, laptop, and vision models referenced by Huawei’s official bulletin. No specific firmware or build versions are listed, so all HarmonyOS deployments should verify that the graphics module has been updated to a secure version.
Risk and Exploitability
The CVSS score of 5.3 indicates a moderate severity. The EPSS score is not available and the vulnerability is not listed in the CISA KEV catalog, suggesting a low likelihood of current exploitation. The most likely attack vector involves delivering malformed graphics data to the affected module; exploitation would disrupt availability but does not directly compromise confidentiality or integrity.
OpenCVE Enrichment