CVE-2023-24465: Communication Wi-Fi subsystem has a null pointer reference vulnerability when receving external data.
Communication Wi-Fi subsystem within OpenHarmony-v3.1.4 and prior versions, OpenHarmony-v3.0.7 and prior versions
has a null pointer reference vulnerability which local attackers can exploit this vulnerability to cause the current application to crash.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-24465?
CVE-2023-24465 is a null pointer reference vulnerability in the Communication Wi-Fi subsystem within OpenHarmony-v3.1.4 and prior versions, OpenHarmony-v3.0.7 and prior versions.
How can local attackers exploit CVE-2023-24465?
Local attackers can exploit CVE-2023-24465 to cause the current application to crash.
What is the severity of CVE-2023-24465?
CVE-2023-24465 has a severity value of 5.5 (medium).
Is there a fix available for CVE-2023-24465?
Yes, the fix for CVE-2023-24465 is to update to OpenHarmony-v3.1.5 or a later version.
Where can I find more information about CVE-2023-24465?
You can find more information about CVE-2023-24465 at the following link: [CVE-2023-24465](https://gitee.com/openharmony/security/blob/master/en/security-disclosure/2023/2023-03.md)