Description
in OpenHarmony v4.0.0 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through use after free or cause DOS through NULL pointer dereference.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-21261 | in OpenHarmony v4.0.0 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through use after free or cause DOS through NULL pointer dereference. |
References
History
Thu, 02 Jan 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Openatom
Openatom openharmony |
|
| CPEs | cpe:2.3:o:openatom:openharmony:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Openatom
Openatom openharmony |
Status: PUBLISHED
Assigner: OpenHarmony
Published:
Updated: 2024-08-01T23:13:08.096Z
Reserved: 2024-03-15T08:05:24.430Z
Link: CVE-2024-23808
Updated: 2024-08-01T23:13:08.096Z
Status : Analyzed
Published: 2024-05-07T07:15:48.243
Modified: 2025-01-02T19:07:39.450
Link: CVE-2024-23808
No data.
OpenCVE Enrichment
No data.
EUVD