CVE-2023-22301: The kernel subsystem hmdfs has a arbitrary memory accessing vulnerability.
Published Mar 10, 2023
·Updated
The kernel subsystem hmdfs within OpenHarmony-v3.1.5 and prior versions has an
arbitrary memory accessing vulnerability which network attackers can launch a remote attack to obtain kernel memory data of the target system.
Affected Software
2 affected components
OpenHarmony OpenHarmony>=3.1<=3.1.5
Openatom Openharmony>=3.1<=3.1.5
Event History
Mar 10, 2023
CVE Published
via MITRE·10:44 AM
Data Sourced
via MITRE·10:44 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2023-22301.
2
What is the severity rating of CVE-2023-22301?
CVE-2023-22301 has a severity rating of 7.5 (High).
3
What is the affected software version of CVE-2023-22301?
The affected software version of CVE-2023-22301 is OpenHarmony-v3.1.5 and prior versions.
4
What is the CWE (Common Weakness Enumeration) ID for this vulnerability?
The CWE ID for this vulnerability is CWE-20.
5
How can an attacker exploit CVE-2023-22301?
An attacker can exploit CVE-2023-22301 by launching a remote attack to obtain kernel memory data of the target system.