First published: Mon Sep 02 2024(Updated: )
in OpenHarmony v4.0.0 and prior versions allow a local attacker cause information leak through out-of-bounds Read.
Credit: scy@openharmony.io
Affected Software | Affected Version | How to fix |
---|---|---|
OpenHarmony | =4.0 | |
OpenHarmony | =4.0-beta1 | |
OpenHarmony | =4.0-beta2 | |
OpenHarmony | =4.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-39612 is classified as a medium severity vulnerability due to information leakage risks.
To fix CVE-2024-39612, you should upgrade to the latest version of OpenHarmony beyond v4.0.1.
CVE-2024-39612 allows local attackers to perform information leakage attacks through out-of-bounds reads.
OpenHarmony v4.0.0 and prior versions including v4.0-beta1, v4.0-beta2, and v4.0.1 are affected by CVE-2024-39612.
Users and organizations utilizing affected versions of OpenHarmony are at risk of exploitation due to CVE-2024-39612.