First published: Fri Mar 10 2023(Updated: )
Communication Wi-Fi subsystem within OpenHarmony-v3.1.4 and prior versions, OpenHarmony-v3.0.7 and prior versions has a null pointer reference vulnerability which local attackers can exploit this vulnerability to cause the current application to crash.
Credit: scy@openharmony.io scy@openharmony.io
Affected Software | Affected Version | How to fix |
---|---|---|
Openharmony Openharmony | >=3.0<=3.0.7 | |
Openharmony Openharmony | >=3.1<=3.1.4 | |
Openatom Openharmony | >=3.0<=3.0.7 | |
Openatom Openharmony | >=3.1<=3.1.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-24465 is a null pointer reference vulnerability in the Communication Wi-Fi subsystem within OpenHarmony-v3.1.4 and prior versions, OpenHarmony-v3.0.7 and prior versions.
Local attackers can exploit CVE-2023-24465 to cause the current application to crash.
CVE-2023-24465 has a severity value of 5.5 (medium).
Yes, the fix for CVE-2023-24465 is to update to OpenHarmony-v3.1.5 or a later version.
You can find more information about CVE-2023-24465 at the following link: [CVE-2023-24465](https://gitee.com/openharmony/security/blob/master/en/security-disclosure/2023/2023-03.md)