Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-38953 | in OpenHarmony v4.1.0 and prior versions allow a local attacker cause the common permission is upgraded to root and sensitive information leak through use after free. |
Wed, 04 Sep 2024 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Openatom
Openatom openharmony |
|
| CPEs | cpe:2.3:o:openatom:openharmony:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Openatom
Openatom openharmony |
Tue, 03 Sep 2024 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Openharmony
Openharmony openharmony |
|
| CPEs | cpe:2.3:a:openharmony:openharmony:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Openharmony
Openharmony openharmony |
|
| Metrics |
ssvc
|
Mon, 02 Sep 2024 03:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | in OpenHarmony v4.1.0 and prior versions allow a local attacker cause the common permission is upgraded to root and sensitive information leak through use after free. | |
| Title | Liteos-A has an use after free vulnerability | |
| Weaknesses | CWE-416 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: OpenHarmony
Published:
Updated: 2024-09-03T14:52:17.647Z
Reserved: 2024-07-22T03:22:00.932Z
Link: CVE-2024-41157
Updated: 2024-09-03T14:52:13.094Z
Status : Analyzed
Published: 2024-09-02T05:15:16.740
Modified: 2024-09-04T16:30:40.737
Link: CVE-2024-41157
No data.
OpenCVE Enrichment
No data.
EUVD