CVE-2024-47797: Liteos_a has an out-of-bounds Write vulnerability
Published Nov 5, 2024
·Updated
in OpenHarmony v4.1.0 and prior versions allow a local attacker cause the common permission is upgraded to root and sensitive information leak through out-of-bounds write.
Affected Software
1 affected component
Openatom Openharmony>=4.0<=4.1
Event History
Nov 5, 2024
CVE Published
via MITRE·08:01 AM
Data Sourced
via MITRE·08:01 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-47797?
CVE-2024-47797 is considered a high severity vulnerability due to its capability to escalate privileges and leak sensitive information.
2
How do I fix CVE-2024-47797?
To remediate CVE-2024-47797, upgrade OpenHarmony to version 4.1.1 or later.
3
What types of systems are affected by CVE-2024-47797?
CVE-2024-47797 affects OpenHarmony versions 4.1.0 and earlier.
4
What kind of attacks can be performed using CVE-2024-47797?
An attacker could exploit CVE-2024-47797 to gain root access and access sensitive data on affected systems.
5
Is there a workaround for CVE-2024-47797 until I can update?
Currently, the only effective mitigation for CVE-2024-47797 is to upgrade to a patched version.