Lucene search

K
vulnrichmentMediaTekVULNRICHMENT:CVE-2023-20702
HistoryNov 06, 2023 - 3:50 a.m.

CVE-2023-20702

2023-11-0603:50:51
MediaTek
github.com
2
5g nrlc
remote denial of service
invalid memory access
ue
error handling
patch id
issue id

AI Score

7.2

Confidence

High

SSVC

Exploitation

none

Automatable

yes

Technical Impact

partial

In 5G NRLC, there is a possible invalid memory access due to lack of error handling. This could lead to remote denial of service, if UE received invalid 1-byte rlc sdu, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY00921261; Issue ID: MOLY01128895.

ADP Affected

[
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6835:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6835",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6873:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6873",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6875:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6875",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6879:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6879",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6883:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6883",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6885:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6885",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6886:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6886",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6889:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6889",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6895:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6895",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6980:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6980",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6983:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6983",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6985:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6985",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt6990:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt6990",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt8673:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt8673",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt8675:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt8675",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt8791:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt8791",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt8791t:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt8791t",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt8797:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt8797",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  },
  {
    "cpes": [
      "cpe:2.3:h:mediatek:mt8798:-:*:*:*:*:*:*:*"
    ],
    "vendor": "mediatek",
    "product": "mt8798",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "custom",
        "lessThanOrEqual": "*"
      }
    ],
    "defaultStatus": "unknown"
  }
]

AI Score

7.2

Confidence

High

SSVC

Exploitation

none

Automatable

yes

Technical Impact

partial

Related for VULNRICHMENT:CVE-2023-20702