CVE-2023-49142: multimedia audio has a UAF vulnerability
Published Jan 2, 2024
·Updated
in OpenHarmony v3.2.2 and prior versions allow a local attacker cause multimedia audio crash through modify a released pointer.
Affected Software
1 affected component
Openatom Openharmony<=3.2.2
Event History
Jan 2, 2024
CVE Published
07:24 AM
Data Sourced
07:24 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-49142?
CVE-2023-49142 is classified as a high-severity vulnerability due to its potential to cause system crashes.
2
How do I fix CVE-2023-49142?
To fix CVE-2023-49142, update OpenHarmony to version 3.2.3 or later, which addresses this vulnerability.
3
What versions of OpenHarmony are affected by CVE-2023-49142?
CVE-2023-49142 affects OpenHarmony versions up to and including 3.2.2.
4
What type of attack does CVE-2023-49142 allow?
CVE-2023-49142 allows a local attacker to cause a multimedia audio crash by modifying a released pointer.
5
Is there a workaround for CVE-2023-49142?
There are no known effective workarounds for CVE-2023-49142 other than applying the recommended updates.