Show filters
184 Total Results
Displaying 31-40 of 184
Sort by:
Attacker Value
Unknown

CVE-2023-5630

Disclosure Date: December 14, 2023 (last updated December 28, 2023)
A CWE-494: Download of Code Without Integrity Check vulnerability exists that could allow a privileged user to install an untrusted firmware.
Attacker Value
Unknown

CVE-2023-5629

Disclosure Date: December 14, 2023 (last updated December 28, 2023)
A CWE-601:URL Redirection to Untrusted Site (‘Open Redirect’) vulnerability exists that could cause disclosure of information through phishing attempts over HTTP.
Attacker Value
Unknown

CVE-2023-32846

Disclosure Date: December 04, 2023 (last updated December 08, 2023)
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of service when receiving malformed RRC messages, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01128524; Issue ID: MOLY01138453 (MSV-861).
Attacker Value
Unknown

CVE-2023-32845

Disclosure Date: December 04, 2023 (last updated December 08, 2023)
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of service when receiving malformed RRC messages, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01128524; Issue ID: MOLY01139296 (MSV-860).
Attacker Value
Unknown

CVE-2023-32844

Disclosure Date: December 04, 2023 (last updated December 08, 2023)
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of service when receiving malformed RRC messages, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01128524; Issue ID: MOLY01130183 (MSV-850).
Attacker Value
Unknown

CVE-2023-32843

Disclosure Date: December 04, 2023 (last updated December 08, 2023)
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of service when receiving malformed RRC messages, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01130204; Issue ID: MOLY01130204 (MSV-849).
Attacker Value
Unknown

CVE-2023-32842

Disclosure Date: December 04, 2023 (last updated December 08, 2023)
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of service when receiving malformed RRC messages, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01130256; Issue ID: MOLY01130256 (MSV-848).
Attacker Value
Unknown

CVE-2023-32841

Disclosure Date: December 04, 2023 (last updated December 08, 2023)
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of service when receiving malformed RRC messages, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01128524; Issue ID: MOLY01128524 (MSV-846).
Attacker Value
Unknown

CVE-2023-32840

Disclosure Date: November 06, 2023 (last updated November 14, 2023)
In modem CCCI, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction may be also needed for exploitation Patch ID: MOLY01138425; Issue ID: MOLY01138425 (MSV-862).
Attacker Value
Unknown

CVE-2023-20702

Disclosure Date: November 06, 2023 (last updated November 14, 2023)
In 5G NRLC, there is a possible invalid memory access due to lack of error handling. This could lead to remote denial of service, if UE received invalid 1-byte rlc sdu, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY00921261; Issue ID: MOLY01128895.