CVE-2023-48360: multimedia player has a UAF vulnerability
Published Jan 2, 2024
·Updated
in OpenHarmony v3.2.2 and prior versions allow a local attacker cause multimedia player crash through modify a released pointer.
Affected Software
1 affected component
Openatom Openharmony<=3.2.2
Event History
Jan 2, 2024
CVE Published
07:24 AM
Data Sourced
07:24 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-48360?
CVE-2023-48360 has been classified as a high severity vulnerability due to the potential for a local attacker to crash the multimedia player.
2
How do I fix CVE-2023-48360?
To mitigate CVE-2023-48360, users should upgrade to OpenHarmony version 3.2.3 or later.
3
What software is affected by CVE-2023-48360?
CVE-2023-48360 affects OpenHarmony versions 3.2.2 and prior.
4
What type of attack does CVE-2023-48360 involve?
CVE-2023-48360 allows a local attacker to exploit a vulnerability by modifying a released pointer.
5
Can CVE-2023-48360 be exploited remotely?
CVE-2023-48360 requires local access for exploitation, thus it cannot be exploited remotely.