in OpenHarmony v4.0.0 and prior versions
allow an adjacent attacker arbitrary code execution in any apps through use after free.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-19471 | in OpenHarmony v4.0.0 and prior versions allow an adjacent attacker arbitrary code execution in any apps through use after free. |
Fri, 08 Nov 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 09 Sep 2024 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Openatom
Openatom openharmony |
|
| CPEs | cpe:2.3:a:openharmony:openharmony:4.0:*:*:*:-:*:*:* |
cpe:2.3:o:openatom:openharmony:*:*:*:*:-:*:*:* cpe:2.3:o:openatom:openharmony:4.0:*:*:*:-:*:*:* |
| Vendors & Products |
Openharmony
Openharmony openharmony |
Openatom
Openatom openharmony |
Status: PUBLISHED
Assigner: OpenHarmony
Published:
Updated: 2024-11-08T15:38:33.808Z
Reserved: 2024-01-06T11:01:00.629Z
Link: CVE-2024-21860
Updated: 2024-08-01T22:27:36.302Z
Status : Modified
Published: 2024-02-02T07:15:11.530
Modified: 2024-11-21T08:55:07.907
Link: CVE-2024-21860
No data.
OpenCVE Enrichment
No data.
EUVD