CVE-2023-33104

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Mar 4, 2024
Updated: Jan 10, 2025
CWE ID 20

Summary

CVE-2023-33104 is a transient Denial of Service (DoS) vulnerability affecting certain network devices. The issue arises when these devices process an out-of-range Parameter Data Unit (PDU) ID in the PDU Release command. This command is used to release a previously allocated PDU, and when an incorrectly sized PDU ID is received, the device experiences a temporary disruption in service as it processes the invalid input. This can result in network congestion or other service disruptions, making it important for affected organizations to apply the necessary patches or workarounds to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share