Vulnerabilities > Openatom > Openharmony > 1.1.4

DATE CVE VULNERABILITY TITLE RISK
2024-04-02 CVE-2024-22098 Use After Free vulnerability in Openatom Openharmony
in OpenHarmony v3.2.4 and prior versions allow a local attacker arbitrary code execution in any apps through use after free.
local
low complexity
openatom CWE-416
8.8
2024-04-02 CVE-2024-22177 Improper Preservation of Permissions vulnerability in Openatom Openharmony
in OpenHarmony v3.2.4 and prior versions allow a local attacker cause apps crash through get permission.
local
low complexity
openatom CWE-281
5.5
2024-04-02 CVE-2024-29074 Unspecified vulnerability in Openatom Openharmony
in OpenHarmony v3.2.4 and prior versions allow a local attacker arbitrary code execution in any apps through improper input.
local
low complexity
openatom
8.8
2024-04-02 CVE-2024-29086 Allocation of Resources Without Limits or Throttling vulnerability in Openatom Openharmony
in OpenHarmony v3.2.4 and prior versions allow a local attacker cause DOS through stack overflow.
local
low complexity
openatom CWE-770
5.5
2023-01-09 CVE-2022-43662 Out-of-bounds Write vulnerability in multiple products
Kernel subsystem within OpenHarmony-v3.1.4 and prior versions in kernel_liteos_a has a kernel stack overflow vulnerability when call SysTimerGettime.
local
low complexity
openharmony openatom CWE-787
7.8
2023-01-09 CVE-2022-45126 Out-of-bounds Write vulnerability in multiple products
Kernel subsystem within OpenHarmony-v3.1.4 and prior versions in kernel_liteos_a has a kernel stack overflow vulnerability when call SysClockGettime.
local
low complexity
openharmony openatom CWE-787
7.8
2022-12-08 CVE-2022-41802 Out-of-bounds Write vulnerability in multiple products
Kernel subsystem within OpenHarmony-v3.1.4 and prior versions in kernel_liteos_a has a kernel stack overflow vulnerability when call SysClockGetres.
local
low complexity
openharmony openatom CWE-787
3.3