OpenHarmony
cpe:2.3:a:openharmony:openharmony:*:*:*:*:*:*:*
- >= 5.0.3, < 5.0.3-Release
A race condition vulnerability has been identified in the OpenHarmony operating system, specifically in the kernel_liteos_a component, in versions through 5.0.3. This vulnerability allows local attackers to execute arbitrary code within the Trusted Computing Base (TCB).
Exploitation of this vulnerability could lead to unauthorized execution of code within the kernel, potentially allowing attackers to escalate privileges or manipulate system processes.
Users can apply the available patch by merging the pull request #1298 into their OpenHarmony v5.0.3 release branch.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.