First published: Mon Nov 20 2023(Updated: )
in OpenHarmony v3.2.2 and prior versions allow a local attacker causes system information leak through type confusion.
Credit: scy@openharmony.io
Affected Software | Affected Version | How to fix |
---|---|---|
Openatom Openharmony | <=3.2.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-46705.
The title of this vulnerability is 'Arkruntime has a type confusion vulnerability.'
The description of this vulnerability is that it allows a local attacker to cause system information leak through type confusion in OpenHarmony v3.2.2 and prior versions.
The affected software and version of this vulnerability is OpenHarmony v3.2.2 and prior versions.
The severity of this vulnerability is medium with a severity value of 6.2.