First published: Tue Nov 05 2024(Updated: )
in OpenHarmony v4.1.0 and prior versions allow a local attacker cause the common permission is upgraded to root and sensitive information leak through double free.
Credit: scy@openharmony.io
Affected Software | Affected Version | How to fix |
---|---|---|
OpenHarmony | >=4.0<=4.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-47404 is considered a high severity vulnerability due to its potential to escalate privileges to root.
To mitigate CVE-2024-47404, update OpenHarmony to version 4.1.1 or later where the vulnerability has been patched.
CVE-2024-47404 affects all installations of OpenHarmony version 4.1.0 and earlier.
CVE-2024-47404 is a local privilege escalation vulnerability that can lead to sensitive information leaks.
No, CVE-2024-47404 requires local access to the system for exploitation.