AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2022-41686

MEDIUM · CVSS 5.1 EPSS 0.32%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-10-14 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2022-41686
Severity
MEDIUM
CVSS
5.1
EPSS
0.32%

Original NVD Description

OpenHarmony-v3.1.2 and prior versions, 3.0.6 and prior versions have an Out-of-bound memory read and write vulnerability in /dev/mmz_userdev device driver. The impact depends on the privileges of the attacker. The unprivileged process run on the device could read out-of-bound memory leading sensitive to information disclosure. The processes with system user UID run on the device would be able to write out-of-bound memory which could lead to unspecified memory corruption.