The appspawn and nwebspawn services within OpenHarmony-v3.1.2 and prior versions were found to be vulnerable to buffer overflow vulnerability due to insufficient input validation. An unprivileged malicious application would be able to gain code execution within any application installed on the device or cause application crash.
History

Mon, 09 Sep 2024 12:45:00 +0000

Type Values Removed Values Added
First Time appeared Openatom
Openatom openharmony
CPEs cpe:2.3:a:openharmony:openharmony:*:*:*:*:lts:*:*:* cpe:2.3:o:openatom:openharmony:*:*:*:*:lts:*:*:*
Vendors & Products Openatom
Openatom openharmony

cve-icon MITRE

Status: PUBLISHED

Assigner: OpenHarmony

Published: 2022-12-08T00:00:00

Updated: 2024-08-03T13:54:03.395Z

Reserved: 2022-11-24T00:00:00

Link: CVE-2022-44455

cve-icon Vulnrichment

Updated: 2024-08-03T13:54:03.395Z

cve-icon NVD

Status : Analyzed

Published: 2022-12-08T16:15:13.413

Modified: 2024-09-09T12:21:53.383

Link: CVE-2022-44455

cve-icon Redhat

No data.