CVE-2024-28044: Liteos-A has an integer overflow vulnerability
Published Sep 2, 2024
·Updated
in OpenHarmony v4.1.0 and prior versions allow a local attacker cause crash through integer overflow.
Affected Software
1 affected component
Openatom Openharmony>=4.0<=4.1
Event History
Sep 2, 2024
CVE Published
via MITRE·03:24 AM
Data Sourced
via MITRE·03:24 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-28044?
CVE-2024-28044 is considered a medium severity vulnerability as it allows a local attacker to cause a crash through integer overflow.
2
How do I fix CVE-2024-28044?
To fix CVE-2024-28044, update OpenHarmony to version 4.1.1 or later, which addresses the integer overflow issue.
3
What versions of OpenHarmony are affected by CVE-2024-28044?
OpenHarmony versions 4.1.0 and prior are affected by CVE-2024-28044.
4
What type of vulnerability is CVE-2024-28044?
CVE-2024-28044 is an integer overflow vulnerability that can lead to application crashes.
5
Can CVE-2024-28044 be exploited remotely?
CVE-2024-28044 requires local access to exploit, making it less of a risk for remote attacks.