CVE-2023-32888: High severity mediatek nr15 vulnerability
In Modem IMS Call UA, there is a possible out of bounds write due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01161830; Issue ID: MOLY01161830 (MSV-894).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-32888?
CVE-2023-32888 has a severity rating that indicates a potential for remote denial of service without requiring additional execution privileges.
How do I fix CVE-2023-32888?
To fix CVE-2023-32888, apply the patches provided in Patch ID MOLY01161830 released by Mediatek.
Is user interaction required to exploit CVE-2023-32888?
No, user interaction is not needed for the exploitation of CVE-2023-32888.
What could happen if CVE-2023-32888 is exploited?
Exploitation of CVE-2023-32888 could lead to a remote denial of service condition.
Which devices are affected by CVE-2023-32888?
CVE-2023-32888 affects several versions of Mediatek NR15, NR16, and NR17.