First published: Fri Sep 09 2022(Updated: )
OpenHarmony-v3.1.2 and prior versions have a heap overflow vulnerability. Local attackers can trigger a heap overflow and get network sensitive information.
Credit: scy@openharmony.io scy@openharmony.io
Affected Software | Affected Version | How to fix |
---|---|---|
Openharmony Openharmony | >=3.0<=3.0.5 | |
Openharmony Openharmony | >=3.1<=3.1.2 | |
Openatom Openharmony | >=3.1<=3.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this OpenHarmony vulnerability is CVE-2022-38701.
The severity of CVE-2022-38701 is medium, with a severity value of 3.3.
Local attackers can exploit CVE-2022-38701 by triggering a heap overflow and obtaining network-sensitive information.
OpenHarmony v3.1.2 and prior versions, including v3.0 to v3.0.5, are affected by CVE-2022-38701.
Please refer to the OpenHarmony security advisory for information on available fixes for CVE-2022-38701.