The bundle management subsystem within OpenHarmony-v3.1.4 and prior versions has a null pointer reference vulnerability which local attackers can exploit this vulnerability to cause a DoS attack to the system when installing a malicious HAP package.
| Software | From | Fixed in |
|---|---|---|
| openatom / openharmony | 3.1 | 3.1.4.x |