Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vvc3-x74m-rg8v

Опубликовано: 06 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY00720348; Issue ID: MSV-2392.

In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY00720348; Issue ID: MSV-2392.

EPSS

Процентиль: 84%
0.02224
Низкий

8.1 High

CVSS3

Дефекты

CWE-121
CWE-787

Связанные уязвимости

CVSS3: 8.1
nvd
около 1 года назад

In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY00720348; Issue ID: MSV-2392.

CVSS3: 8.1
fstec
больше 2 лет назад

Уязвимость микропрограммного обеспечения микросхем MediaTek, связанная с переполнением буфера в стеке, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 84%
0.02224
Низкий

8.1 High

CVSS3

Дефекты

CWE-121
CWE-787