CVE-2023-32842: High severity mediatek nr15 vulnerability
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of service when receiving malformed RRC messages, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01130256; Issue ID: MOLY01130256 (MSV-848).
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-32842?
CVE-2023-32842 is a vulnerability in the 5G Modem that can lead to a system crash and remote denial of service when receiving malformed RRC messages.
How does CVE-2023-32842 affect the affected software?
CVE-2023-32842 affects the Mediatek Nr15, Mediatek Nr16, and Mediatek Nr17 5G Modems running on the Google Android platform.
Is user interaction required for exploitation of CVE-2023-32842?
No, user interaction is not needed for exploitation of CVE-2023-32842.
What is the severity of CVE-2023-32842?
The severity of CVE-2023-32842 is high, with a CVSS score of 7.5.
How can CVE-2023-32842 be fixed?
To fix CVE-2023-32842, users should apply the patch with ID MOLY01130256, provided by Mediatek.