First published: Fri Sep 09 2022(Updated: )
OpenHarmony-v3.1.2 and prior versions have an incorrect configuration of the cJSON library, which leads a Stack overflow vulnerability during recursive parsing. LAN attackers can lead a DoS attack to all network devices.
Credit: scy@openharmony.io scy@openharmony.io
Affected Software | Affected Version | How to fix |
---|---|---|
Openharmony Openharmony | >=1.1.0<=1.1.5 | |
Openharmony Openharmony | >=3.0<=3.0.5 | |
Openharmony Openharmony | >=3.1<=3.1.2 | |
Openatom Openharmony | >=3.1<=3.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2022-36423.
The severity of CVE-2022-36423 is high.
The affected software for CVE-2022-36423 is OpenHarmony-v3.1.2 and prior versions.
CVE-2022-36423 can lead to a Denial of Service (DoS) attack on all network devices.
A fix for CVE-2022-36423 is not mentioned in the provided information.