PT-2024-21749 · Unknown · Openharmony

Published

2024-05-07

·

Updated

2025-01-02

·

CVE-2024-27217

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions OpenHarmony versions prior to 4.0.0
Description The issue allows a local attacker to execute arbitrary code in pre-installed apps through use after free.
Recommendations For versions prior to 4.0.0, update to version 4.0.0 or later to resolve the issue.

Fix

Use After Free

Weakness Enumeration

Related Identifiers

CVE-2024-27217

Affected Products

Openharmony