Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q7vj-9wm2-wvxr

Опубликовано: 03 фев. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01289384; Issue ID: MSV-2436.

In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01289384; Issue ID: MSV-2436.

EPSS

Процентиль: 74%
0.00839
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 9.8
nvd
около 1 года назад

In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01289384; Issue ID: MSV-2436.

EPSS

Процентиль: 74%
0.00839
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-787