PT-2024-9402 · Unisoc · Unisoc Chipsets

Published

2024-09-27

·

Updated

2024-09-30

·

CVE-2024-39431

CVSS v3.1

8.3

High

VectorAV:A/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Unisoc chipsets (affected versions not specified)
Description: The issue is related to a buffer overflow in the UMTS RLC driver of Unisoc chipsets' microprogram software. This is due to a missing bounds check, which could lead to a remote denial of service. The exploitation of this issue requires system execution privileges.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Stack Overflow

Weakness Enumeration

Related Identifiers

ASB-A-349917018
BDU:2024-11095
CVE-2024-39431
U-2638126

Affected Products

Unisoc Chipsets