OpenHarmony是中国开放原子开源基金会(OpenAtom Foundation)基金会的一种鸿蒙操作系统的开源项目。 OpenHarmony v3.2.4 版本之前存在安全漏洞,。本地攻击者利用该漏洞可以通过释放后重用在任何应用程序中执行任意代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| OpenHarmony | OpenHarmony | v3.2.0 ~ v3.2.4 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-28226 | 8.1 HIGH | Fs has an improper input validation vulnerability |
| CVE-2024-22092 | 7.7 HIGH | Bundlemanager has an authentication bypass vulnerability |
| CVE-2024-24581 | 6.5 MEDIUM | Arkcompiler runtime has an out-of-bounds write vulnerability |
| CVE-2024-29074 | 6.5 MEDIUM | Telephony has an improper input validation vulnerability |
| CVE-2024-28951 | 5.5 MEDIUM | Arkcompiler runtime has a use after free vulnerability |
| CVE-2024-21834 | 3.3 LOW | Arkui has a type confusion vulnerability |
| CVE-2024-22177 | 3.3 LOW | Audio has an improper preservation of permissions vulnerability |
| CVE-2024-22180 | 3.3 LOW | Camera has a use after free vulnerability |
| CVE-2024-29086 | 3.3 LOW | Arkcompiler runtime has a stack overflow svulnerability |
No comments yet