Huawei HarmonyOS DSoftBus Module Deserialization Mismatch Vulnerability

Vulnerability

A deserialization mismatch vulnerability has been identified in the DSoftBus module of Huawei's HarmonyOS. This vulnerability affects multiple versions, including HarmonyOS 2.0.0, 2.1.0, 3.0.0, 3.1.0, 4.0.0, as well as EMUI 12.0.0, 13.0.0, and 14.0.0. Successful exploitation of this vulnerability may impact service integrity.

Impact

Exploitation of this vulnerability may lead to a disruption of service integrity.

Remediation

Users can refer to the Huawei Security Bulletin for April 2025 for guidance on applying the necessary patches.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
4.7
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.