CVE-2023-4233
CVSS 3.1 Score 8.1 of 10 (high)
Details
Published Apr 17, 2024
Updated: Jul 3, 2024
CWE ID 119
Summary
CVE-2023-4233: A stack overflow vulnerability was discovered in ofono, an Open Source Telephony software on Linux. This issue is located in the sms_decode_address_field() function, which can be triggered during SMS PDU decoding. The flaw can potentially be exploited by an attacker with access to a compromised modem, a malicious base station, or through malicious SMS messages. Successful exploitation may lead to a denial of service or arbitrary code execution.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.