CVE-2024-21826: Huks has an insecure storage of sensitive information vulnerability
Published Mar 4, 2024
·Updated
in OpenHarmony v3.2.4 and prior versions allow a local attacker cause sensitive information leak through insecure storage.
Affected Software
1 affected component
Openatom Openharmony>=3.2<=3.2.4
Remediation
Event History
Mar 4, 2024
CVE Published
via MITRE·06:19 AM
Data Sourced
via MITRE·06:19 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·07:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-21826?
CVE-2024-21826 has been assigned a severity rating that indicates a potential risk of sensitive information leakage.
2
How do I fix CVE-2024-21826?
To fix CVE-2024-21826, upgrade to OpenHarmony version 3.2.5 or later, where the insecure storage issue has been addressed.
3
Who is affected by CVE-2024-21826?
CVE-2024-21826 primarily affects users of OpenHarmony v3.2.4 and earlier versions.
4
What type of vulnerability is documented in CVE-2024-21826?
CVE-2024-21826 is classified as an information disclosure vulnerability due to insecure storage.
5
Can a remote attacker exploit CVE-2024-21826?
No, CVE-2024-21826 requires local access for an attacker to exploit the vulnerability.