Kernel subsystem within OpenHarmony-v3.1.4 and prior versions in kernel_liteos_a has a kernel stack overflow vulnerability when call SysTimerGettime. 4 bytes padding data from kernel stack are copied to user space incorrectly and leaked.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: OpenHarmony

Published: 2023-01-09T02:23:02.577Z

Updated:

Reserved: 2022-11-24T11:48:41.247Z


Link: CVE-2022-43662

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-01-09T03:15:09.327

Modified: 2023-01-12T20:54:32.723


Link: CVE-2022-43662

JSON object: View

cve-icon Redhat Information

No data.