Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9gwm-vjc7-848h

Опубликовано: 13 июн. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

In CellInfoListParserV2::FillCellInfo() of protocolnetadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with baseband firmware compromise required. User interaction is not needed for exploitation.

In CellInfoListParserV2::FillCellInfo() of protocolnetadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with baseband firmware compromise required. User interaction is not needed for exploitation.

EPSS

Процентиль: 31%
0.00118
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 4.3
nvd
больше 1 года назад

In CellInfoListParserV2::FillCellInfo() of protocolnetadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with baseband firmware compromise required. User interaction is not needed for exploitation.

EPSS

Процентиль: 31%
0.00118
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-125