First published: Tue Nov 05 2024(Updated: )
in OpenHarmony v4.1.0 and prior versions allow a local attacker cause the common permission is upgraded to root and sensitive information leak through out-of-bounds write.
Credit: scy@openharmony.io
Affected Software | Affected Version | How to fix |
---|---|---|
Openatom Openharmony | >=4.0<=4.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-47797 is considered a high severity vulnerability due to its capability to escalate privileges and leak sensitive information.
To remediate CVE-2024-47797, upgrade OpenHarmony to version 4.1.1 or later.
CVE-2024-47797 affects OpenHarmony versions 4.1.0 and earlier.
An attacker could exploit CVE-2024-47797 to gain root access and access sensitive data on affected systems.
Currently, the only effective mitigation for CVE-2024-47797 is to upgrade to a patched version.