CVE-2024-21816: Background task manager has an improper preservation of permissions vulnerability
Published Mar 4, 2024
·Updated
in OpenHarmony v4.0.0 and prior versions allow a local attacker cause information leak through improper preservation of permissions.
Affected Software
1 affected component
Openatom Openharmony=4.0
Remediation
Event History
Mar 4, 2024
CVE Published
via MITRE·06:19 AM
Data Sourced
via MITRE·06:19 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·07:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-21816?
CVE-2024-21816 is categorized as a medium severity vulnerability due to the potential information leak.
2
How do I fix CVE-2024-21816?
To mitigate CVE-2024-21816, users should upgrade to OpenHarmony version 4.0.1 or later where the vulnerability is addressed.
3
Who is affected by CVE-2024-21816?
CVE-2024-21816 affects all users of OpenHarmony versions 4.0.0 and prior.
4
What types of attacks can exploit CVE-2024-21816?
Local attackers can exploit CVE-2024-21816 to cause information leaks through improper preservation of permissions.
5
What components of OpenHarmony does CVE-2024-21816 impact?
CVE-2024-21816 impacts the security aspects of OpenHarmony's permission management feature.