In Modem IMS Stack, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01161803; Issue ID: MOLY01161803 (MSV-893).
                
            References
                    | Link | Resource | 
|---|---|
| https://corp.mediatek.com/product-security-bulletin/January-2024 | Vendor Advisory | 
| https://corp.mediatek.com/product-security-bulletin/January-2024 | Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
| AND | 
 
 | 
History
                    21 Nov 2024, 08:04
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://corp.mediatek.com/product-security-bulletin/January-2024 - Vendor Advisory | 
05 Jan 2024, 12:11
| Type | Values Removed | Values Added | 
|---|---|---|
| CVSS | v2 : v3 : | v2 : unknown v3 : 9.8 | 
| CWE | CWE-787 | |
| CPE | cpe:2.3:o:mediatek:nr16:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6893:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6878:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6983w:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6833:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6835:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6983t:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6833p:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6990:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6980d:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6789:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6880:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6983z:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6875:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6877t:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6879:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6891:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6813:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6853t:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6883:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6781:-:*:*:*:*:*:*:* cpe:2.3:o:mediatek:lr13:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6783:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6985t:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt2735:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6897:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6855:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6890:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6785:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6985:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6889:-:*:*:*:*:*:*:* cpe:2.3:o:mediatek:nr17:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6980:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6877:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6989:-:*:*:*:*:*:*:* cpe:2.3:o:mediatek:nr15:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6896:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6779:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6885:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6895:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6873:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6785t:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6886:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6853:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6895t:-:*:*:*:*:*:*:* | |
| References | () https://corp.mediatek.com/product-security-bulletin/January-2024 - Vendor Advisory | 
02 Jan 2024, 03:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2024-01-02 03:15
Updated : 2025-04-17 19:15
NVD link : CVE-2023-32874
Mitre link : CVE-2023-32874
CVE.ORG link : CVE-2023-32874
JSON object : View
Products Affected
                mediatek
- mt6783
- mt6886
- mt6785t
- mt6877t
- mt6879
- mt6878
- mt6983z
- mt6779
- mt6835
- mt6983t
- mt6781
- mt6853t
- mt6891
- mt6983w
- mt6855
- mt6985t
- nr16
- mt6895
- mt6880
- mt6853
- mt6990
- mt6877
- mt6883
- mt6897
- mt6989
- mt6980d
- mt6985
- mt6873
- mt6885
- mt6896
- mt6833
- mt6895t
- lr13
- mt6980
- mt6833p
- mt6813
- mt6890
- nr17
- mt6893
- nr15
- mt6789
- mt6785
- mt6875
- mt6889
- mt2735
CWE
                
                    
                        
                        CWE-787
                        
            Out-of-bounds Write
