← back
CVE-2023-52344

CVE-2023-52344

CVSS 5.3 MEDIUMEPSS 0.4%CWE-476
In short

A flaw in modem-ps-nas-ngmm allows attackers to access sensitive information remotely by exploiting improper error handling that causes undefined behavior. No special permissions are required to trigger this vulnerability.

Technical detail

The vulnerability stems from incorrect error handling in modem-ps-nas-ngmm (CWE-476: Null Pointer Dereference), enabling remote information disclosure without elevated privileges. The undefined behavior can be triggered remotely and may leak sensitive data through error responses or memory contents.

Summary generated and translated by AI from the official description.
In modem-ps-nas-ngmm, there is a possible undefined behavior due to incorrect error handling. This could lead to remote information disclosure no additional execution privileges needed
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →