← back
CVE-2023-52533

CVE-2023-52533

CVSS 5.3 MEDIUMEPSS 0.4%CWE-475
In short

A modem component fails to properly handle errors, which can expose sensitive information to remote attackers without requiring special privileges. This happens because the code doesn't correctly check for error conditions.

Technical detail

CWE-475 undefined behavior stems from improper error handling in modem-ps-nas-ngmm, allowing remote information disclosure via crafted inputs. No elevated privileges required; the vulnerability resides in missing or incorrect error validation paths that permit data leakage.

Summary generated and translated by AI from the official description.
In modem-ps-nas-ngmm, there is a possible undefined behavior due to incorrect error handling. This could lead to remote information disclosure no additional execution privileges needed
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →