A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the sms_decode_address_field() function during the SMS PDU decoding. It is assumed that the attack scenario is accessible from a compromised modem, a malicious base station, or just SMS.
Metrics
Affected Vendors & Products
References
History
Tue, 04 Nov 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 04 Nov 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:ofono_project:ofono:2.1:*:*:*:*:*:*:* | |
| Metrics |
ssvc
|
Thu, 07 Aug 2025 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Fedoraproject
Fedoraproject fedora Ofono Project Ofono Project ofono |
|
| CPEs | cpe:2.3:a:ofono_project:ofono:*:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:40:*:*:*:*:*:*:* |
|
| Vendors & Products |
Fedoraproject
Fedoraproject fedora Ofono Project Ofono Project ofono |
Status: PUBLISHED
Assigner: fedora
Published: 2024-04-17T22:50:49.698Z
Updated: 2025-11-04T18:16:56.833Z
Reserved: 2023-08-08T08:02:24.411Z
Link: CVE-2023-4233
Updated: 2025-11-04T18:16:56.833Z
Status : Modified
Published: 2024-04-17T23:15:07.163
Modified: 2025-11-04T19:16:13.627
Link: CVE-2023-4233
No data.