CVE-2023-49699

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Nov 30, 2023
Updated: Dec 5, 2023
CWE ID 119
CWE ID 787

Summary

CVE-2023-49699 is a newly disclosed memory corruption vulnerability impacting the IMS (IP Multimedia Subsystem) component during VoLTE (Voice over Long Term Evolution) Streamingmedia Interface calls. Attackers can leverage this issue to execute arbitrary code on affected systems, potentially leading to serious security implications, including unauthorized access, data theft, or denial-of-service attacks. The IMS component is a critical part of modern communication networks and is used extensively in VoLTE services, making this vulnerability particularly concerning. Users are advised to apply the available patches as soon as possible to mitigate the risks associated with this issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share