in OpenHarmony v4.1.0 and prior versions allow a local attacker cause the common permission is upgraded to root and sensitive information leak through double free.
References
Link | Resource |
---|---|
https://gitee.com/openharmony/security/blob/master/zh/security-disclosure/2024/2024-11.md | Vendor Advisory |
Configurations
History
06 Nov 2024, 15:25
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:o:openatom:openharmony:*:*:*:*:-:*:*:* | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
References | () https://gitee.com/openharmony/security/blob/master/zh/security-disclosure/2024/2024-11.md - Vendor Advisory | |
First Time |
Openatom
Openatom openharmony |
|
Summary |
|
05 Nov 2024, 08:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-11-05 08:15
Updated : 2024-11-06 15:25
NVD link : CVE-2024-47404
Mitre link : CVE-2024-47404
CVE.ORG link : CVE-2024-47404
JSON object : View
Products Affected
openatom
- openharmony
CWE
CWE-415
Double Free