First published: Mon Sep 02 2024(Updated: )
in OpenHarmony v4.1.0 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through out-of-bounds write.
Credit: scy@openharmony.io
Affected Software | Affected Version | How to fix |
---|---|---|
Openatom Openharmony | >=4.0<=4.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-38386 has a high severity rating due to the potential for arbitrary code execution by local attackers.
To fix CVE-2024-38386, update OpenHarmony to version 4.1.0 or later.
Users of OpenHarmony versions 4.1.0 and prior are affected by CVE-2024-38386.
CVE-2024-38386 is a local arbitrary code execution vulnerability.
Pre-installed applications on OpenHarmony are impacted by CVE-2024-38386.