OpenHarmony-v3.1.2 and prior versions have an authenication bypass vulnerability in a callback handler function of Softbus_server in communication subsystem. Attackers can launch attacks on distributed networks by sending Bluetooth rfcomm packets to any remote device and executing arbitrary commands.
| Software | From | Fixed in |
|---|---|---|
| openharmony / openharmony | 3.1 | 3.1.2.x |