First published: Fri Mar 10 2023(Updated: )
The ArKUI framework subsystem within OpenHarmony-v3.1.5 and prior versions, OpenHarmony-v3.0.7 and prior versions has an Improper Input Validation vulnerability which local attackers can exploit this vulnerability to send malicious data, causing the current application to crash.
Credit: scy@openharmony.io scy@openharmony.io
Affected Software | Affected Version | How to fix |
---|---|---|
Openharmony Openharmony | >=3.0<=3.0.7 | |
Openharmony Openharmony | >=3.1<=3.1.5 | |
Openatom Openharmony | >=3.0<=3.0.7 | |
Openatom Openharmony | >=3.1<=3.1.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-0083 refers to an Improper Input Validation vulnerability in the ArKUI framework subsystem within OpenHarmony-v3.1.5 and prior versions.
Local attackers can exploit CVE-2023-0083 by sending malicious data, which can cause the current application to crash.
OpenHarmony-v3.1.5, OpenHarmony-v3.0.7, and prior versions are affected by CVE-2023-0083.
CVE-2023-0083 has a severity rating of medium with a score of 5.5.
There is currently no known fix for CVE-2023-0083. It is recommended to apply the latest security patches or upgrade to a version that is not affected.