CVE-2023-43612: Hiview has an improper preservation of permissions vulnerability
Published Nov 20, 2023
·Updated
in OpenHarmony v3.2.2 and prior versions allow a local attacker arbitrary file read and write through improper preservation of permissions.
Affected Software
1 affected component
Openatom Openharmony<=3.2.2
Event History
Nov 20, 2023
CVE Published
11:45 AM
Data Sourced
11:45 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2023-43612?
CVE-2023-43612 is a vulnerability in OpenHarmony v3.2.2 and prior versions that allows a local attacker to perform arbitrary file read and write operations due to improper preservation of permissions.
2
How severe is CVE-2023-43612?
CVE-2023-43612 has a severity rating of 8.4 out of 10, indicating a high severity.
3
What software versions are affected by CVE-2023-43612?
OpenHarmony v3.2.2 and prior versions are affected by CVE-2023-43612.
4
How can a local attacker exploit CVE-2023-43612?
A local attacker can exploit CVE-2023-43612 to read and write arbitrary files on the target system.
5
Is there a fix available for CVE-2023-43612?
Please refer to the official reference link for the fix and update information for CVE-2023-43612.