In ims service, there is a possible system crash due to incorrect error handling. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01394606; Issue ID: MSV-2739.
The product does not properly control the amount of recursion that takes place, consuming excessive resources, such as allocated memory or the program stack.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Lr12a | Mediatek | - (including) | - (including) |
Lr13 | Mediatek | - (including) | - (including) |
Nr15 | Mediatek | - (including) | - (including) |
Nr16 | Mediatek | - (including) | - (including) |
Nr17 | Mediatek | - (including) | - (including) |
Nr17r | Mediatek | - (including) | - (including) |