CVE-2025-12736

in OpenHarmony v5.0.3 and prior versions allow a local attacker case sensitive information leak through use of uninitialized resource.
Configurations

Configuration 1 (hide)

cpe:2.3:o:openatom:openharmony:5.0.3:*:*:*:-:*:*:*

History

17 Mar 2026, 15:40

Type Values Removed Values Added
First Time Openatom
Openatom openharmony
CPE cpe:2.3:o:openatom:openharmony:5.0.3:*:*:*:-:*:*:*
References () https://gitcode.com/openharmony/security/tree/master/zh/security-disclosure/2025/2025-12.md - () https://gitcode.com/openharmony/security/tree/master/zh/security-disclosure/2025/2025-12.md - Vendor Advisory

16 Mar 2026, 14:17

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-16 14:17

Updated : 2026-03-17 15:40


NVD link : CVE-2025-12736

Mitre link : CVE-2025-12736

CVE.ORG link : CVE-2025-12736


JSON object : View

Products Affected

openatom

  • openharmony
CWE
CWE-908

Use of Uninitialized Resource