openharmony 鸿蒙 OpenHarmony-v3.1.7-release

2023-06-24 浏览 (743)

OpenHarmony 3.1.7 Release

Version Description

OpenHarmony 3.1.7 Release provides enhanced system security over OpenHarmony 3.1.6 Release by rectifying memory leak issues, certain known vulnerabilities in open-source components such as Linux kernel, and system stability issues. The matching SDK version is also updated.

Version Mapping

Table 1 Version mapping of software and tools

Software/ToolVersionRemarks
OpenHarmony3.1.7 ReleaseNA
Full SDKOhos_sdk_full 3.1.13.6 (API Version 8 Release)This toolkit is intended for original equipment manufacturers (OEMs) and contains system APIs that require system permissions.
To use the full SDK, manually obtain it from the mirror and switch to it in DevEco Studio. For details, see Guide to Switching to Full SDK.
Public SDKOhos_sdk_public 3.1.13.6 (API Version 8 Release)This toolkit is intended for application developers and does not contain system APIs that require system permissions.
It is provided as standard in DevEco Studio 3.0 Beta4 or later.
(Optional) HUAWEI DevEco Studio3.1 Preview for OpenHarmonyRecommended for developing OpenHarmony applications
(Optional) HUAWEI DevEco Device Tool3.0 ReleaseRecommended for developing OpenHarmony smart devices

Source Code Acquisition

Prerequisites

  1. Register your account with Gitee.

  2. Register an SSH public key for access to Gitee.

  3. Install the git client and git-lfs, and configure user information.

    git config --global user.name "yourname"
    git config --global user.email "your-email-address"
    git config --global credential.helper store
    
  4. Run the following commands to install the repo tool:

    curl -s https://gitee.com/oschina/repo/raw/fork_flow/repo-py3 > /usr/local/bin/repo  # If you do not have the permission, download the tool to another directory and configure it as an environment variable by running the chmod a+x /usr/local/bin/repo command.
    pip3 install -i https://repo.huaweicloud.com/repository/pypi/simple requests
    

Acquiring Source Code Using the repo Tool

Method 1 (recommended)

Use the repo tool to download the source code over SSH. (You must have an SSH public key for access to Gitee.)

repo init -u git@gitee.com:openharmony/manifest.git -b refs/tags/OpenHarmony-v3.1.7-Release --no-repo-verify
repo sync -c
repo forall -c 'git lfs pull'

Method 2

Use the repo tool to download the source code over HTTPS.

repo init -u https://gitee.com/openharmony/manifest.git -b refs/tags/OpenHarmony-v3.1.7-Release --no-repo-verify
repo sync -c
repo forall -c 'git lfs pull'

Acquiring Source Code from Mirrors

Table 2 Mirrors for acquiring source code

Source CodeVersionMirrorSHA-256 Checksum
Full code base (for mini, small, and standard systems)3.1.7 ReleaseDownloadDownload
Hi3516 standard system solution (binary)3.1.7 ReleaseDownloadDownload
RK3568 standard system solution (binary)3.1.7 ReleaseDownloadDownload
Hi3861 mini system solution (binary)3.1.7 ReleaseDownloadDownload
Hi3516 small system solution - LiteOS (binary)3.1.7 ReleaseDownloadDownload
Hi3516 small system solution - Linux (binary)3.1.7 ReleaseDownloadDownload
Full SDK package for the standard system (macOS)3.1.13.6DownloadDownload
Full SDK package for the standard system (Windows/Linux)3.1.13.6DownloadDownload
Public SDK package for the standard system (macOS)3.1.13.6DownloadDownload
Public SDK package for the standard system (Windows/Linux)3.1.13.6DownloadDownload

What's New

This version has the following updates to OpenHarmony 3.1.7 Release.

Feature Update

This version does not involve feature updates.

Change APIs

This version does not involve API updates.

Chip and Development Board Adaptation

For details about the adaptation status, see SIG_DevBoard.

Resolved Issues

Table 3 Resolved issues

SubsystemDescription
Application subsystemWhen a user accesses Contacts, the default page No contacts flashes and the contact list is displayed. (I5ET9R)
A widget is created and pushed to the RK3568 development board. It is then added to the home screen. When a user holds the widget on the home screen, the page showing Service widget and Remove is displayed, and the application is opened. (I5YB1O)
A cpp crash issue is detected using the tool. (I65H83).
A cpp crash issue is detected using the tool. (I65TVW).
Memory leakage occurs when a user repeatedly clicks Recent on Launcher. (I67SRG)
Multimedia subsystemThere is a high probability that the home screen crashes when a user opens Gallery, touches the Albums tab, and then touches Camera. (I5QUSZ)
A cpp crash issue is detected using the tool. (I65GZ1)
Globalization subsystemA cpp crash issue is detected using the tool. (I65GR8)
Accessibility subsystemThe test report of an injection attack test shows that the ohos.accessibility.IAccessibleAbilityManagerServiceClient API has an injection exception. (I65PHE)
ArkUI development frameworkThe image effect function is invalid. (I65UID)
Adaptation to the multi-resource build package is required for mini-, small- and stardard-system devices. (I78S6M)
Ability frameworkAfter two windows are paired in split-screen mode, if one window is closed, the other window is also closed. (I6AF0Y)
DFX subsystemlibhilog.z.so crashes in ohos.samples.distributedmusicplayer. (I6DCSL)

Fixed Security Vulnerabilities

Table 4 Fixed security vulnerabilities

Issue No.DescriptionPR Link
I67XCLSecurity vulnerability of the kernel_linux_5.10 component: CVE-2022-3640.PR
I6A56QSecurity vulnerability of the kernel_linux_5.10 component: CVE-2023-20928PR
I6B0K7Security vulnerability of the kernel_linux_5.10 component: CVE-2022-4696PR
I6BNVWSecurity vulnerabilities of the mbedtls component: CVE-2021-44732 and CVE-2021-45450PR
I6BTZMSecurity vulnerability of the flutter component: CVE-2022-37434PR
I6BXT0Security vulnerabilities of the kernel_linux_5.10 component: CVE-2023-23559, CVE-2023-0179, CVE-2023-23454, and CVE-2023-23455PR
I6DQAHSecurity vulnerabilities of the kernel_linux_5.10 component: CVE-2023-0590 and CVE-2022-3707PR
I6DTV8Security vulnerability of the libexif component: CVE-2019-9278PR
I6E5KASecurity vulnerability of the openssl component: CVE-2023-0286PR
I6FFUVSecurity vulnerabilities of the kernel_linux_5.10 component: CVE-2023-20938, CVE-2023-0045, and CVE-2023-0615PR
I6FZ3ASecurity vulnerability of the cares component: CVE-2022-4904PR
I6HYROSecurity vulnerability of the kernel_linux_4.19 component: CVE-2022-3028PR
I6JH1ISecurity vulnerabilities of the kernel_linux_5.10 component: CVE-2023-0461, CVE-2023-23004, CVE-2023-23000, CVE-2023-1078, CVE-2023-1076, CVE-2023-1118, CVE-2023-22995, and CVE-2023-26545PR
I6JH1LSecurity vulnerabilities of the kernel_linux_4.19 component: CVE-2023-0461, CVE-2023-26545, CVE-2022-0480, CVE-2023-1118, CVE-2022-1652, and CVE-2021-3760PR
I6JH2LSecurity vulnerabilities of the kernel_linux_4.19 component: CVE-2023-23559, CVE-2022-47929, CVE-2022-2873, and CVE-2023-23455PR
I6LCHOSecurity vulnerability of the kernel_linux_4.19 component: CVE-2023-0030PR

Known Issues

Table 5 Known issues

Issue No.DescriptionImpactTo Be Resolved By
I6HAUC[3.1] When the Windows API is called, the mouse is distorted in landscape/portrait mode.Developer experience is affected.2023-04-28

你可能感兴趣的鸿蒙文章

harmony 鸿蒙OpenHarmony 1.0 (2020-09-10) (EOL)

harmony 鸿蒙OpenHarmony 1.1.0 LTS (2021-04-01) (EOL)

harmony 鸿蒙OpenHarmony 1.1.1 LTS (2021-06-22) (EOL)

harmony 鸿蒙OpenHarmony 2.0 Canary (2021-06-01)

harmony 鸿蒙OpenHarmony v1.1.3 LTS (EOL)

harmony 鸿蒙OpenHarmony 1.1.4 LTS (EOL)

harmony 鸿蒙OpenHarmony v1.1.2 LTS (EOL)

harmony 鸿蒙OpenHarmony 1.1.5 LTS (EOL)

harmony 鸿蒙OpenHarmony v2.2 Beta2

harmony 鸿蒙OpenHarmony 3.0 LTS

  • 所属分类: 后端技术
  • 本文标签: 软件 鸿蒙
  • 版权声明: 本文链接 https://seaxiang.com/blog/7e97f87a6e0141bfbef5f4f4a45ee6f7