CVE-2022-25717
Memory corruption in display due to double free while allocating frame buffer memory
Source: CVE-2022-25717
CVE-2022-25717
Memory corruption in display due to double free while allocating frame buffer memory
Source: CVE-2022-25717
CVE-2022-25746
Memory corruption in kernel due to missing checks when updating the access rights of a memextent mapping.
Source: CVE-2022-25746
CVE-2022-25716
Memory corruption in Multimedia Framework due to unsafe access to the data members
Source: CVE-2022-25716
CVE-2022-22470
IBM Security Verify Governance 10.0 stores user credentials in plain clear text which can be read by a local user. IBM X-Force ID: 225232.
Source: CVE-2022-22470
CVE-2010-10004
A vulnerability was found in Information Cards Module and classified as problematic. This issue affects some unknown processing. The manipulation leads to cross site scripting. The attack may be initiated remotely. Upgrading to version 1.0 is able to address this issue. The name of the patch is f6bfea49ae16dc6e179df8306d39c3694f1ef186. It is recommended to upgrade the affected component. The identifier VDB-217661 was assigned to this vulnerability.
Source: CVE-2010-10004
CVE-2022-25890
All versions of the package wifey are vulnerable to Command Injection via the connect() function due to improper input sanitization.
Source: CVE-2022-25890
CVE-2022-43662
Kernel subsystem within OpenHarmony-v3.1.4 and prior versions in kernel_liteos_a has a kernel stack overflow vulnerability when call SysTimerGettime. 4 bytes padding data from kernel stack are copied to user space incorrectly and leaked.
Source: CVE-2022-43662
CVE-2023-0035
softbus_client_stub in communication subsystem within OpenHarmony-v3.0.5 and prior versions has an authentication bypass vulnerability which allows an "SA relay attack".Local attackers can bypass authentication and attack other SAs with high privilege.
Source: CVE-2023-0035
CVE-2023-0036
platform_callback_stub in misc subsystem within OpenHarmony-v3.0.5 and prior versions has an authentication bypass vulnerability which allows an "SA relay attack".Local attackers can bypass authentication and attack other SAs with high privilege.
Source: CVE-2023-0036