OpenHarmony-v3.1.2 and prior versions had a DOS vulnerability in distributedhardware_device_manager when joining a network. Network attakcers can send an abonormal packet when joining a network, cause a nullptr reference and device reboot.
The product dereferences a pointer that it expects to be valid but is NULL.
Link | Tags |
---|---|
https://gitee.com/openharmony/security/blob/master/en/security-disclosure/2022/2022-11.md | third party advisory patch vendor advisory |