Логотип exploitDog
bind:CVE-2023-2794
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-2794

Количество 5

Количество 5

ubuntu логотип

CVE-2023-2794

почти 2 года назад

A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the decode_deliver() function during the SMS decoding. It is assumed that the attack scenario is accessible from a compromised modem, a malicious base station, or just SMS. There is a bound check for this memcpy length in decode_submit(), but it was forgotten in decode_deliver().

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2023-2794

почти 2 года назад

A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the decode_deliver() function during the SMS decoding. It is assumed that the attack scenario is accessible from a compromised modem, a malicious base station, or just SMS. There is a bound check for this memcpy length in decode_submit(), but it was forgotten in decode_deliver().

CVSS3: 8.1
EPSS: Низкий
debian логотип

CVE-2023-2794

почти 2 года назад

A flaw was found in ofono, an Open Source Telephony on Linux. A stack ...

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-qcrm-33g9-cjcc

почти 2 года назад

A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the decode_deliver() function during the SMS decoding. It is assumed that the attack scenario is accessible from a compromised modem, a malicious base station, or just SMS. There is a bound check for this memcpy length in decode_submit(), but it was forgotten in decode_deliver().

CVSS3: 8.1
EPSS: Низкий
fstec логотип

BDU:2024-06941

около 2 лет назад

Уязвимость функции decode_deliver() интерфейса для работы с мобильной связью oFono, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

CVSS3: 8.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2023-2794

A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the decode_deliver() function during the SMS decoding. It is assumed that the attack scenario is accessible from a compromised modem, a malicious base station, or just SMS. There is a bound check for this memcpy length in decode_submit(), but it was forgotten in decode_deliver().

CVSS3: 8.1
0%
Низкий
почти 2 года назад
nvd логотип
CVE-2023-2794

A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the decode_deliver() function during the SMS decoding. It is assumed that the attack scenario is accessible from a compromised modem, a malicious base station, or just SMS. There is a bound check for this memcpy length in decode_submit(), but it was forgotten in decode_deliver().

CVSS3: 8.1
0%
Низкий
почти 2 года назад
debian логотип
CVE-2023-2794

A flaw was found in ofono, an Open Source Telephony on Linux. A stack ...

CVSS3: 8.1
0%
Низкий
почти 2 года назад
github логотип
GHSA-qcrm-33g9-cjcc

A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the decode_deliver() function during the SMS decoding. It is assumed that the attack scenario is accessible from a compromised modem, a malicious base station, or just SMS. There is a bound check for this memcpy length in decode_submit(), but it was forgotten in decode_deliver().

CVSS3: 8.1
0%
Низкий
почти 2 года назад
fstec логотип
BDU:2024-06941

Уязвимость функции decode_deliver() интерфейса для работы с мобильной связью oFono, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

CVSS3: 8.1
0%
Низкий
около 2 лет назад

Уязвимостей на страницу