First published: Tue Nov 05 2024(Updated: )
in OpenHarmony v4.1.0 and prior versions allow a local attacker cause the common permission is upgraded to root and sensitive information leak through out-of-bounds write.
Credit: scy@openharmony.io
Affected Software | Affected Version | How to fix |
---|---|---|
Openatom Openharmony | >=4.0<=4.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-47137 is considered a high severity vulnerability due to its potential for unauthorized privilege escalation and sensitive information leak.
To fix CVE-2024-47137, update OpenHarmony to a version later than v4.1.0 that addresses this vulnerability.
CVE-2024-47137 affects OpenHarmony versions 4.1.0 and prior, allowing local attackers to escalate permissions.
CVE-2024-47137 allows a local attacker to perform an out-of-bounds write, potentially upgrading common permissions to root.
Exploiting CVE-2024-47137 requires local access to the affected system, which may limit the scope of attackers.