First published: Fri Feb 02 2024(Updated: )
in OpenHarmony v4.0.0 and prior versions allow a local attacker cause heap overflow through integer overflow.
Credit: scy@openharmony.io
Affected Software | Affected Version | How to fix |
---|---|---|
Openatom Openharmony | >=3.2.0<=3.2.4 | |
Openatom Openharmony | =4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-21851 is classified as a high-severity vulnerability due to its potential to cause heap overflow.
To fix CVE-2024-21851, update to OpenHarmony version 4.0.1 or later, or apply the relevant security patches if available.
CVE-2024-21851 allows local attackers to exploit heap overflow vulnerabilities through integer overflow, leading to potential code execution.
CVE-2024-21851 affects OpenHarmony versions 4.0.0 and prior, specifically including versions from 3.2.0 to 3.2.4.
CVE-2024-21851 is a local vulnerability, meaning it can only be exploited by attackers with local access to the affected systems.