First published: Mon Sep 02 2024(Updated: )
in OpenHarmony v4.0.0 and prior versions allow a local attacker cause information leak through out-of-bounds Read.
Credit: scy@openharmony.io
Affected Software | Affected Version | How to fix |
---|---|---|
OpenHarmony | =4.0 | |
OpenHarmony | =4.0-beta1 | |
OpenHarmony | =4.0-beta2 | |
OpenHarmony | =4.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-38382 is considered moderate due to the potential for information leakage.
To fix CVE-2024-38382, update OpenHarmony to version 4.0.1 or later.
CVE-2024-38382 affects local users of OpenHarmony versions 4.0.0, 4.0-beta1, 4.0-beta2, and 4.0.1.
CVE-2024-38382 is an information leak vulnerability caused by an out-of-bounds read.
No, CVE-2024-38382 requires local access to the affected system to be exploited.