CVE-2024-38382

in OpenHarmony v4.0.0 and prior versions allow a local attacker cause information leak through out-of-bounds Read.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:openatom:openharmony:4.0:-:*:*:-:*:*:*
cpe:2.3:o:openatom:openharmony:4.0:beta1:*:*:-:*:*:*
cpe:2.3:o:openatom:openharmony:4.0:beta2:*:*:-:*:*:*
cpe:2.3:o:openatom:openharmony:4.0.1:*:*:*:-:*:*:*

History

04 Sep 2024, 17:10

Type Values Removed Values Added
CPE cpe:2.3:o:openatom:openharmony:4.0.1:*:*:*:-:*:*:*
cpe:2.3:o:openatom:openharmony:4.0:beta1:*:*:-:*:*:*
cpe:2.3:o:openatom:openharmony:4.0:beta2:*:*:-:*:*:*
cpe:2.3:o:openatom:openharmony:4.0:-:*:*:-:*:*:*
First Time Openatom
Openatom openharmony
References () https://gitee.com/openharmony/security/blob/master/zh/security-disclosure/2024/2024-09.md - () https://gitee.com/openharmony/security/blob/master/zh/security-disclosure/2024/2024-09.md - Vendor Advisory

03 Sep 2024, 12:59

Type Values Removed Values Added
Summary
  • (es) en OpenHarmony v4.0.0 y versiones anteriores, se permite que un atacante local provoque fugas de información a través de lecturas fuera de los límites.

02 Sep 2024, 05:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-09-02 05:15

Updated : 2024-09-04 17:10


NVD link : CVE-2024-38382

Mitre link : CVE-2024-38382

CVE.ORG link : CVE-2024-38382


JSON object : View

Products Affected

openatom

  • openharmony
CWE
CWE-125

Out-of-bounds Read

CWE-922

Insecure Storage of Sensitive Information