Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-38954 | in OpenHarmony v4.1.0 and prior versions allow a local attacker cause the common permission is upgraded to root and sensitive information leak through use after free. |
Mon, 09 Sep 2024 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Openatom
Openatom openharmony |
|
| CPEs | cpe:2.3:o:openatom:openharmony:*:*:*:*:-:*:*:* | |
| Vendors & Products |
Openatom
Openatom openharmony |
Wed, 04 Sep 2024 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:openharmony:openharmony:*:*:*:*:-:*:*:* |
Tue, 03 Sep 2024 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Openharmony
Openharmony openharmony |
|
| CPEs | cpe:2.3:a:openharmony:openharmony:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Openharmony
Openharmony openharmony |
|
| Metrics |
ssvc
|
Mon, 02 Sep 2024 03:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | in OpenHarmony v4.1.0 and prior versions allow a local attacker cause the common permission is upgraded to root and sensitive information leak through use after free. | |
| Title | Liteos-A has an use after free vulnerability | |
| Weaknesses | CWE-416 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: OpenHarmony
Published:
Updated: 2024-09-03T14:50:58.644Z
Reserved: 2024-07-22T03:22:00.906Z
Link: CVE-2024-41160
Updated: 2024-09-03T14:50:54.289Z
Status : Analyzed
Published: 2024-09-02T05:15:16.923
Modified: 2024-09-09T12:21:53.383
Link: CVE-2024-41160
No data.
OpenCVE Enrichment
No data.
EUVD