In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of service when receiving malformed RRC messages, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01128524; Issue ID: MOLY01138453 (MSV-861).
References
| Link | Resource |
|---|---|
| https://corp.mediatek.com/product-security-bulletin/December-2023 | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
Information
Published : 2023-12-04 04:15
Updated : 2023-12-07 17:33
NVD link : CVE-2023-32846
Mitre link : CVE-2023-32846
JSON object : View
Products Affected
mediatek
- mt6985
- mt2737
- mt6298
- mt6891
- mt6835
- mt6877
- mt6983
- mt6895t
- mt6875
- mt6880
- mt6875t
- mt6895
- mt6896
- mt6813
- mt6897
- mt6855
- mt6980d
- mt6297
- mt6980
- nr15
- mt6890
- mt6873
- mt2735
- nr16
- mt6889
- mt6886
- mt6989
- mt6833
- mt6990
- nr17
- mt6893
- mt6853
- mt6885
- mt6879
- mt6815
- mt6883
CWE
CWE-617
Reachable Assertion
