PT-2023-13306 · Unknown · User Identity Module

Published

2023-04-04

·

Updated

2024-04-12

·

CVE-2022-33302

CVSS v3.1

6.8

Medium

VectorAV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions User Identity Module (affected versions not specified)
Description The issue is caused by memory corruption due to improper validation of array index in the User Identity Module. This occurs when the APN TLV length is greater than the command length.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Validation of Array Index

Weakness Enumeration

Related Identifiers

CVE-2022-33302

Affected Products

User Identity Module