Filtered by vendor Openatom
Subscribe
Total
150 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2021-33646 | 3 Fedoraproject, Feep, Openatom | 3 Fedora, Libtar, Openeuler | 2025-11-03 | N/A | 7.5 HIGH |
|
The th_read() function doesn’t free a variable t->th_buf.gnu_longname after allocating memory, which may cause a memory leak.
|
|||||
| CVE-2021-33645 | 3 Fedoraproject, Feep, Openatom | 3 Fedora, Libtar, Openeuler | 2025-11-03 | N/A | 7.5 HIGH |
|
The th_read() function doesn’t free a variable t->th_buf.gnu_longlink after allocating memory, which may cause a memory leak.
|
|||||
| CVE-2021-33644 | 3 Fedoraproject, Feep, Openatom | 3 Fedora, Libtar, Openeuler | 2025-11-03 | N/A | 8.1 HIGH |
|
An attacker who submits a crafted tar file with size in header struct being 0 may be able to trigger an calling of malloc(0) for a variable gnu_longname, causing an out-of-bounds read.
|
|||||
| CVE-2021-33643 | 3 Fedoraproject, Feep, Openatom | 3 Fedora, Libtar, Openeuler | 2025-11-03 | N/A | 9.1 CRITICAL |
|
An attacker who submits a crafted tar file with size in header struct being 0 may be able to trigger an calling of malloc(0) for a variable gnu_longlink, causing an out-of-bounds read.
|
|||||
| CVE-2024-54030 | 1 Openatom | 1 Openharmony | 2025-10-16 | N/A | 4.4 MEDIUM |
|
in OpenHarmony v4.1.2 and prior versions allow a local attacker cause DOS through use after free.
|
|||||
| CVE-2024-47398 | 1 Openatom | 1 Openharmony | 2025-10-16 | N/A | 8.8 HIGH |
|
in OpenHarmony v4.1.2 and prior versions allow a local attacker cause the device is unable to boot up through out-of-bounds write.
|
|||||
| CVE-2024-45070 | 1 Openatom | 1 Openharmony | 2025-10-16 | N/A | 5.5 MEDIUM |
|
in OpenHarmony v4.1.2 and prior versions allow a local attacker cause information leak through out-of-bounds Read.
|
|||||
| CVE-2025-24304 | 1 Openatom | 1 Openharmony | 2025-10-16 | N/A | 3.3 LOW |
|
in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds write.
|
|||||
| CVE-2025-27534 | 1 Openatom | 1 Openharmony | 2025-10-16 | N/A | 3.3 LOW |
|
in OpenHarmony v5.0.2 and prior versions allow a local attacker case DOS through missing release of memory.
|
|||||
| CVE-2025-25057 | 1 Openatom | 1 Openharmony | 2025-10-16 | N/A | 3.3 LOW |
|
in OpenHarmony v5.0.2 and prior versions allow a local attacker case DOS through missing release of memory.
|
|||||
| CVE-2025-22851 | 1 Openatom | 1 Openharmony | 2025-10-16 | N/A | 6.5 MEDIUM |
|
in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through integer overflow.
|
|||||
| CVE-2025-22842 | 1 Openatom | 1 Openharmony | 2025-10-16 | N/A | 3.3 LOW |
|
in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds read.
|
|||||
| CVE-2025-20102 | 1 Openatom | 1 Openharmony | 2025-10-16 | N/A | 3.3 LOW |
|
in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds read.
|
|||||
| CVE-2025-22452 | 1 Openatom | 1 Openharmony | 2025-10-16 | N/A | 3.3 LOW |
|
in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds read.
|
|||||
| CVE-2025-24298 | 1 Openatom | 1 Openharmony | 2025-08-12 | N/A | 8.4 HIGH |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in tcb through use after free.
|
|||||
| CVE-2025-24844 | 1 Openatom | 1 Openharmony | 2025-08-12 | N/A | 3.3 LOW |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through missing release of memory.
|
|||||
| CVE-2025-24925 | 1 Openatom | 1 Openharmony | 2025-08-12 | N/A | 3.3 LOW |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through missing release of memory.
|
|||||
| CVE-2025-25212 | 1 Openatom | 1 Openharmony | 2025-08-12 | N/A | 3.3 LOW |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through improper input.
|
|||||
| CVE-2025-25278 | 1 Openatom | 1 Openharmony | 2025-08-12 | N/A | 8.4 HIGH |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in tcb through race condition.
|
|||||
| CVE-2025-26690 | 1 Openatom | 1 Openharmony | 2025-08-12 | N/A | 3.3 LOW |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through NULL pointer dereference.
|
|||||
| CVE-2025-27128 | 1 Openatom | 1 Openharmony | 2025-08-12 | N/A | 8.4 HIGH |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in tcb through use after free.
|
|||||
| CVE-2025-27536 | 1 Openatom | 1 Openharmony | 2025-08-12 | N/A | 3.3 LOW |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through type confusion.
|
|||||
| CVE-2025-27562 | 1 Openatom | 1 Openharmony | 2025-08-12 | N/A | 3.3 LOW |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through missing release of memory.
|
|||||
| CVE-2025-27577 | 1 Openatom | 1 Openharmony | 2025-08-12 | N/A | 8.4 HIGH |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in tcb through race condition.
|
|||||
| CVE-2025-20063 | 1 Openatom | 1 Openharmony | 2025-06-09 | N/A | 3.3 LOW |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause apps crash through type confusion.
|
|||||
| CVE-2025-21082 | 1 Openatom | 1 Openharmony | 2025-06-09 | N/A | 3.3 LOW |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause apps crash through type confusion.
|
|||||
| CVE-2025-23235 | 1 Openatom | 1 Openharmony | 2025-06-09 | N/A | 3.3 LOW |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through out-of-bounds read.
|
|||||
| CVE-2025-24493 | 1 Openatom | 1 Openharmony | 2025-06-09 | N/A | 5.5 MEDIUM |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause information leak through race condition.
|
|||||
| CVE-2025-25217 | 1 Openatom | 1 Openharmony | 2025-06-09 | N/A | 3.3 LOW |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through NULL pointer dereference.
|
|||||
| CVE-2025-26691 | 1 Openatom | 1 Openharmony | 2025-06-09 | N/A | 5.5 MEDIUM |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause information leak through get permission.
|
|||||
| CVE-2025-26693 | 1 Openatom | 1 Openharmony | 2025-06-09 | N/A | 3.3 LOW |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause information leak through get permission.
|
|||||
| CVE-2025-27131 | 1 Openatom | 1 Openharmony | 2025-06-09 | N/A | 6.1 MEDIUM |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through improper input.
|
|||||
| CVE-2025-27242 | 1 Openatom | 1 Openharmony | 2025-06-09 | N/A | 3.3 LOW |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through improper input.
|
|||||
| CVE-2025-27247 | 1 Openatom | 1 Openharmony | 2025-06-09 | N/A | 5.5 MEDIUM |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause information leak through get permission.
|
|||||
| CVE-2025-27563 | 1 Openatom | 1 Openharmony | 2025-06-09 | N/A | 3.3 LOW |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause information leak through get permission.
|
|||||
| CVE-2025-27132 | 1 Openatom | 1 Openharmony | 2025-05-09 | N/A | 3.8 LOW |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through out-of-bounds write. This vulnerability can be exploited only in restricted scenarios.
|
|||||
| CVE-2025-27241 | 1 Openatom | 1 Openharmony | 2025-05-09 | N/A | 3.3 LOW |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through NULL pointer dereference.
|
|||||
| CVE-2025-27248 | 1 Openatom | 1 Openharmony | 2025-05-09 | N/A | 3.3 LOW |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through NULL pointer dereference.
|
|||||
| CVE-2025-22886 | 1 Openatom | 1 Openharmony | 2025-05-09 | N/A | 3.3 LOW |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through missing release of memory.
|
|||||
| CVE-2025-25052 | 1 Openatom | 1 Openharmony | 2025-05-09 | N/A | 3.3 LOW |
|
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through buffer overflow.
|
|||||