VendorsOpenAtomopenharmonyany version
Vulnerabilities

OpenAtom OpenHarmony any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

146CVEs
CVE-2024-21845
Dsoftbus has an integer overflow vulnerability
Published 2024-02-02 · Modified
7.8EPSS 0.002
CVE-2023-46708
Wlan has a use after free vulnerability
Published 2024-03-04 · Analyzed
7.8EPSS 0.002
CVE-2025-21084
Arkcompiler Ets Runtime has an NULL pointer dereference vulnerability
Published 2025-03-04 · Analyzed
7.8EPSS 0.002
CVE-2025-20626
Arkcompiler Ets Runtime has an UAF vulnerability
Published 2025-03-04 · Analyzed
7.8EPSS 0.002
CVE-2025-24301
Arkcompiler Ets Runtime has an UAF vulnerability
Published 2025-03-04 · Analyzed
7.8EPSS 0.002
CVE-2025-23414
Arkcompiler Ets Runtime has an UAF vulnerability
Published 2025-03-04 · Analyzed
7.8EPSS 0.002
CVE-2025-24309
Arkcompiler Ets Runtime has an out-of-bounds write vulnerability
Published 2025-03-04 · Analyzed
7.8EPSS 0.002
CVE-2025-23420
Arkcompiler Ets Runtime has an out-of-bounds write vulnerability
Published 2025-03-04 · Analyzed
7.8EPSS 0.002
CVE-2025-23409
Communication Dsoftbus has an UAF vulnerability
Published 2025-03-04 · Analyzed
7.8EPSS 0.002
CVE-2025-23240
Arkcompiler Ets Runtime has an out-of-bounds write vulnerability
Published 2025-03-04 · Analyzed
7.8EPSS 0.002
CVE-2025-20091
Communication Dsoftbus has an UAF vulnerability
Published 2025-03-04 · Analyzed
7.8EPSS 0.002
CVE-2025-22835
Arkcompiler Ets Runtime has an out-of-bounds write vulnerability
Published 2025-03-04 · Analyzed
7.8EPSS 0.002
CVE-2025-27132
arkcompiler_ets_runtime has an out-of-bounds write vulnerability
Published 2025-05-06 · Analyzed
7.8EPSS 0.002
CVE-2024-21851
Dsoftbus has an integer overflow vulnerability
Published 2024-02-02 · Modified
7.8EPSS 0.002
CVE-2024-22092
Bundlemanager has an authentication bypass vulnerability
Published 2024-04-02 · Analyzed
7.7EPSS 0.004
CVE-2023-22301
The kernel subsystem hmdfs has a arbitrary memory accessing vulnerability.
Published 2023-03-10 · Modified
7.5EPSS 0.006
CVE-2024-39775
Net Manager has an out-of-bounds read permission bypass vulnerability
Published 2024-09-02 · Analyzed
7.5EPSS 0.004
CVE-2022-36423
Incorrect configuration of the cJSON library lead a Stack overflow vulnerability during recursive parsing. LAN attackers can lead a DoS attack to all network devices.
Published 2022-09-09 · Modified
7.4EPSS 0.003
CVE-2023-3116
Liteos-A has a incorrect default permissions vulnerability
Published 2023-11-20 · Modified
7.3EPSS 0.002
CVE-2024-39831
AccessTokenManager has an use after free vulnerability
Published 2024-10-08 · Analyzed
6.7EPSS 0.002
CVE-2023-46100
Cert manager has a use of uninitialized resource vulnerability
Published 2023-11-20 · Modified
6.2EPSS 0.002
CVE-2023-46705
Arkruntime has a type confusion vulnerability
Published 2023-11-20 · Modified
6.2EPSS 0.002
CVE-2022-38701
IPC in communication subsystem has a heap overflow vulnerability. Local attackers can trigger a heap overflow and get network sensitive information.
Published 2022-09-09 · Modified
6.2EPSS 0.002
CVE-2023-42774
Liteos-A has a incorrect default permissions vulnerability
Published 2023-11-20 · Modified
6.2EPSS 0.002
CVE-2024-21863
Dsoftbus has an improper input validation vulnerability
Published 2024-02-02 · Modified
6.2EPSS 0.002
CVE-2023-25947
The bundle management subsystem has a improper input validation when installing a HAP package.
Published 2023-03-10 · Modified
6.2EPSS 0.002
CVE-2025-27131
kernel_liteos_m has an improper input vulnerability
Published 2025-06-08 · Analyzed
6.1EPSS 0.001
CVE-2024-21826
Huks has an insecure storage of sensitive information vulnerability
Published 2024-03-04 · Analyzed
5.5EPSS 0.002
CVE-2023-47217
Arkruntime has a buffer overflow vulnerability
Published 2023-11-20 · Modified
5.5EPSS 0.002
CVE-2024-3757
Arkcompiler runtime has an integer overflow vulnerability
Published 2024-05-07 · Analyzed
5.5EPSS 0.002
CVE-2024-54030
Communication_dsoftbus has an UAF vulnerability
Published 2025-01-07 · Analyzed
5.5EPSS 0.002
CVE-2024-0285
Dsoftbus has an improper input validation vulnerability
Published 2024-02-02 · Modified
5.5EPSS 0.002
CVE-2025-21098
Liteos-A has an insecure storage of sensitive information vulnerability
Published 2025-03-04 · Analyzed
5.5EPSS 0.002
CVE-2024-31078
Bluetooth Service has a use after free vulnerability
Published 2024-05-07 · Analyzed
5.5EPSS 0.002
CVE-2023-0083
The ArkUI framework subsystem doesn't check the input parameter,causing type confusion and invalid memory access.
Published 2023-03-10 · Modified
5.5EPSS 0.002
CVE-2023-4753
OpenHarmony v3.2.1 and prior version has a system call function usage error
Published 2023-09-21 · Modified
5.5EPSS 0.002
CVE-2023-24465
Communication Wi-Fi  subsystem has a null pointer reference vulnerability when receving external data.
Published 2023-03-10 · Modified
5.5EPSS 0.002
CVE-2026-0639
liteos_a has a missing release of memory vulnerability
Published 2026-03-16 · Analyzed
5.5EPSS 0.002
CVE-2024-29086
Arkcompiler runtime has a stack overflow svulnerability
Published 2024-04-02 · Analyzed
5.5EPSS 0.002
CVE-2023-47857
multimedia camera has a UAF vulnerability
Published 2024-01-02 · Modified
5.5EPSS 0.002
← Prev2 / 4Next →