Back

MEDIUM

The ArkUI framework subsystem doesn't check the input parameter,causing type confusion and invalid memory access.

Published Mar 10, 2023

Description

The ArKUI framework subsystem within OpenHarmony-v3.1.5 and prior versions,

OpenHarmony-v3.0.7 and prior versions

has an Improper Input Validation vulnerability which local attackers can exploit this vulnerability to send malicious data, causing the current application to crash.

Affected products

Remediation

No remediation recorded yet.

Weaknesses (1)

References (2)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner OpenHarmony
Published Mar 10, 2023
Updated Feb 27, 2025
Reserved Jan 5, 2023

CISA Vulnrichment

Updated Feb 27, 2025

NVD

Status Modified
Modified Jun 17, 2026

Red Hat

No data

ENISA EUVD

Assigner OpenHarmony
Published Mar 10, 2023
Updated Feb 27, 2025

GitHub

No data