CVE-2023-4753: OpenHarmony v3.2.1 and prior version has a system call function usage error
OpenHarmony v3.2.1 and prior version has a liteos-a kernel may crash caused by mqueue undetected entries vulnerability. Local attackers can crash liteos-a kernel by the error input
Other sources
OpenHarmony v3.2.1 and prior version has a system call function usage error. Local attackers can crash kernel by the error input.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-4753?
CVE-2023-4753 is a vulnerability in OpenHarmony v3.2.1 and prior versions that can cause the liteos-a kernel to crash due to undetected entries in mqueue.
How severe is CVE-2023-4753?
The severity of CVE-2023-4753 is classified as medium with a severity value of 5.5.
How can local attackers exploit CVE-2023-4753?
Local attackers can exploit CVE-2023-4753 to crash the liteos-a kernel by providing error input.
Which version of OpenHarmony is affected by CVE-2023-4753?
OpenHarmony v3.2.1 and prior versions are affected by CVE-2023-4753.
Is there a fix available for CVE-2023-4753?
Please refer to the official reference link for information on the fix for CVE-2023-4753.