PT-2024-28669 · Unknown · Openharmony

Published

2024-09-01

·

Updated

2024-09-05

·

CVE-2024-39775

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions OpenHarmony versions 4.1.0 and prior
Description The issue allows a remote attacker to cause an information leak through an out-of-bounds read.
Recommendations For versions 4.1.0 and prior, update to a newer version to mitigate the risk of information leak. As a temporary workaround, consider restricting access to sensitive information until a patch is available.

Fix

Out of bounds Read

Insecure Storage of Sensitive Information

Weakness Enumeration

Related Identifiers

CVE-2024-39775

Affected Products

Openharmony