OpenHarmony
cpe:2.3:a:openharmony:openharmony:*:*:*:*:*:*:*
- <= 4.1.2
A use-after-free vulnerability has been identified in the OpenHarmony LiteOS_A kernel, in versions through 4.1.2. This vulnerability allows a local attacker to escalate privileges by upgrading common permissions to root, and it also leads to the leakage of sensitive information.
Exploitation of this vulnerability allows local attackers to gain root privileges and access sensitive information.
Users can apply the patch available in the OpenHarmony kernel_liteos_a repository, specifically in the 4.1.x branch.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.