CVE-2023-33099

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Apr 1, 2024
Updated: Jan 13, 2025
CWE ID 20

Summary

CVE-2023-33099 is a newly identified transient Denial of Service (DoS) vulnerability that targets the processing of SMS containers of non-standard sizes in the Non-Real Time (NAS) transport of Next-Generation Radio (NR) networks. When a device receives an SMS message of an unexpected size, the NAS transport may become unresponsive, leading to a temporary DoS condition. This issue may impact network availability and the ability to deliver SMS messages efficiently. It is essential for network operators to apply the necessary patches or updates to mitigate this vulnerability and maintain network resilience.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share