First published: Thu Nov 03 2022(Updated: )
OpenHarmony-v3.1.2 and prior versions had a DOS vulnerability in distributedhardware_device_manager when joining a network. Network attakcers can send an abonormal packet when joining a network, cause a nullptr reference and device reboot.
Credit: scy@openharmony.io scy@openharmony.io
Affected Software | Affected Version | How to fix |
---|---|---|
Openharmony Openharmony | >=3.1<=3.1.2 | |
>=3.1<=3.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2022-43495.
OpenHarmony-v3.1.2 and prior versions had a DOS vulnerability in distributedhardware_device_manager when joining a network. Network attackers can send an abnormal packet when joining a network, causing a nullptr reference and device reboot.
OpenHarmony-v3.1.2 and prior versions are affected by this vulnerability.
The severity of CVE-2022-43495 is high with a CVSS score of 7.5.
An attacker can exploit this vulnerability by sending an abnormal packet when joining a network, causing a nullptr reference and device reboot.