PT-2022-17856 · Unknown · Modem 4G Rrc

Published

2022-11-08

·

Updated

2025-05-01

·

CVE-2022-26446

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Modem 4G RRC (affected versions not specified)
Description The issue is related to improper input validation in the Modem 4G RRC, which can cause a system crash. This can lead to a remote denial of service when a specially crafted SIB12 (CMAS message) is concatenated. No additional execution privileges are needed, and user interaction is not required for exploitation.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Assertion Failure

Weakness Enumeration

Related Identifiers

CVE-2022-26446

Affected Products

Modem 4G Rrc