Security Advisory

CVE-2022-45126

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-01-09 02:22:23
Last updated 2025-04-09 13:39:52
Assigner OpenHarmony
State PUBLISHED

Description

Kernel subsystem within OpenHarmony-v3.1.4 and prior versions in kernel_liteos_a has a kernel stack overflow vulnerability when call SysClockGettime. 4 bytes padding data from kernel stack are copied to user space incorrectly and leaked.