Beveiligingsadvies

CVE-2023-0036

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-01-09 02:24:08
Laatst bijgewerkt 2025-04-09 13:32:40
Toegewezen door OpenHarmony
CVSS-score 6.5
Status PUBLISHED

Beschrijving

platform_callback_stub in misc subsystem within OpenHarmony-v3.0.5 and prior versions has an authentication bypass vulnerability which allows an "SA relay attack".Local attackers can bypass authentication and attack other SAs with high privilege.