CVE-2023-46705: Arkruntime has a type confusion vulnerability
Published Nov 20, 2023
·Updated
in OpenHarmony v3.2.2 and prior versions allow a local attacker causes system information leak through type confusion.
Affected Software
1 affected component
Openatom Openharmony<=3.2.2
Event History
Nov 20, 2023
CVE Published
11:46 AM
Data Sourced
11:46 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2023-46705.
2
What is the title of this vulnerability?
The title of this vulnerability is 'Arkruntime has a type confusion vulnerability.'
3
What is the description of this vulnerability?
The description of this vulnerability is that it allows a local attacker to cause system information leak through type confusion in OpenHarmony v3.2.2 and prior versions.
4
What is the affected software and version of this vulnerability?
The affected software and version of this vulnerability is OpenHarmony v3.2.2 and prior versions.
5
What is the severity of this vulnerability?
The severity of this vulnerability is medium with a severity value of 6.2.