CVE-2023-32844: High severity mediatek nr15 vulnerability
In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of service when receiving malformed RRC messages, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01128524; Issue ID: MOLY01130183 (MSV-850).
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-32844?
CVE-2023-32844 is a vulnerability in the 5G Modem that can lead to a system crash due to improper error handling.
How does CVE-2023-32844 impact the system?
CVE-2023-32844 can lead to remote denial of service when receiving malformed RRC messages, without requiring additional execution privileges. User interaction is not needed for exploitation.
What is the severity of CVE-2023-32844?
The severity of CVE-2023-32844 is high with a CVSS score of 7.5.
How can I fix CVE-2023-32844?
To fix CVE-2023-32844, apply the patch with ID MOLY01128524.
Where can I find more information about CVE-2023-32844?
You can find more information about CVE-2023-32844 in the MediaTek Product Security Bulletin for December 2023.