OpenHarmony
cpe:2.3:a:openharmony:openharmony:*:*:*:*:*:*:*
- <= 5.0.3-Release
A use-after-free vulnerability has been identified in the OpenHarmony kernel LiteOS A component, in versions through 5.0.3. This vulnerability allows local attackers to execute arbitrary code within the Trusted Computing Base (TCB).
Exploitation of this vulnerability could lead to unauthorized arbitrary code execution within the TCB.
Users can apply the available patch by merging the pull request #1279 on the OpenHarmony kernel_liteos_a repository.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.