OpenHarmony
cpe:2.3:a:openharmony:openharmony:*:*:*:*:*:*:*
- <= 5.0.3-Release
A use-after-free vulnerability has been identified in the OpenHarmony kernel LiteOS A component, specifically in versions through 5.0.3. This vulnerability allows local attackers to execute arbitrary code within the Trusted Computing Base (TCB).
Exploitation of this vulnerability could lead to unauthorized arbitrary code execution within the TCB, potentially allowing attackers to manipulate system processes or resources at a fundamental level.
Users can apply the available patch by updating to the OpenHarmony 5.0.3 release version. Instructions for applying the patch can be found in the OpenHarmony kernel LiteOS A repository on Gitee.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.