Vulnerabilities > Openatom > Openharmony > 3.0.7

DATE CVE VULNERABILITY TITLE RISK
2024-04-02 CVE-2024-22098 Use After Free vulnerability in Openatom Openharmony
in OpenHarmony v3.2.4 and prior versions allow a local attacker arbitrary code execution in any apps through use after free.
local
low complexity
openatom CWE-416
8.8
2024-04-02 CVE-2024-22177 Improper Preservation of Permissions vulnerability in Openatom Openharmony
in OpenHarmony v3.2.4 and prior versions allow a local attacker cause apps crash through get permission.
local
low complexity
openatom CWE-281
5.5
2024-04-02 CVE-2024-29074 Unspecified vulnerability in Openatom Openharmony
in OpenHarmony v3.2.4 and prior versions allow a local attacker arbitrary code execution in any apps through improper input.
local
low complexity
openatom
8.8
2024-04-02 CVE-2024-29086 Allocation of Resources Without Limits or Throttling vulnerability in Openatom Openharmony
in OpenHarmony v3.2.4 and prior versions allow a local attacker cause DOS through stack overflow.
local
low complexity
openatom CWE-770
5.5
2023-03-10 CVE-2023-0083 Type Confusion vulnerability in Openatom Openharmony
The ArKUI framework subsystem within OpenHarmony-v3.1.5 and prior versions, OpenHarmony-v3.0.7 and prior versions has an Improper Input Validation vulnerability which local attackers can exploit this vulnerability to send malicious data, causing the current application to crash.
local
low complexity
openatom CWE-843
5.5
2023-03-10 CVE-2023-24465 NULL Pointer Dereference vulnerability in Openatom Openharmony
Communication Wi-Fi subsystem within OpenHarmony-v3.1.4 and prior versions, OpenHarmony-v3.0.7 and prior versions has a null pointer reference vulnerability which local attackers can exploit this vulnerability to cause the current application to crash.
local
low complexity
openatom CWE-476
5.5