Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-44455


The appspawn and nwebspawn services within OpenHarmony-v3.1.2 and prior versions were found to be vulnerable to buffer overflow vulnerability due to insufficient input validation. An unprivileged malicious application would be able to gain code execution within any application installed on the device or cause application crash.


Published

2022-12-08T16:15:13.413

Last Modified

2024-11-21T07:28:02.960

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.8 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-120
  • Type: Primary
    CWE-120

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application openharmony openharmony ≤ 3.1.2 Yes
Operating System openatom openharmony ≤ 3.0.6 Yes

References