Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-7386

Опубликовано: 21 мар. 2019
Источник: nvd
CVSS3: 6.5
CVSS2: 7.1
EPSS Низкий

Описание

A Denial of Service issue has been discovered in the Gecko component of KaiOS 2.5 10.05 (platform 48.0.a2) on Nokia 8810 4G devices. When a crafted web page is visited with the internal browser, the Gecko process crashes with a segfault. Successful exploitation could lead to the remote code execution on the device.

Ссылки

Уязвимые конфигурации

Конфигурация 1

Одновременно

Одно из

cpe:2.3:o:kaiostech:kaios:2.5:*:*:*:*:*:*:*
cpe:2.3:o:nokia:8810_4g_firmware:10.05:*:*:*:*:*:*:*
cpe:2.3:h:nokia:8810_4g:-:*:*:*:*:*:*:*

EPSS

Процентиль: 85%
0.02608
Низкий

6.5 Medium

CVSS3

7.1 High

CVSS2

Дефекты

NVD-CWE-noinfo

Связанные уязвимости

CVSS3: 6.5
github
больше 3 лет назад

A Denial of Service issue has been discovered in the Gecko component of KaiOS 2.5 10.05 (platform 48.0.a2) on Nokia 8810 4G devices. When a crafted web page is visited with the internal browser, the Gecko process crashes with a segfault. Successful exploitation could lead to the remote code execution on the device.

EPSS

Процентиль: 85%
0.02608
Низкий

6.5 Medium

CVSS3

7.1 High

CVSS2

Дефекты

NVD-CWE-noinfo