Asrmicro
Asrmicro Asr1803 Firmware: vulnerabilidades y CVE
Asrmicro Asr1803 Firmware tiene 9 vulnerabilidades publicadas, 1 de ellas en los últimos 12 meses. 2 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE9
Últimos 12 meses1
Críticas2
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-42799 | Crítica (9.8) | 0.38% | — | 30 abr 2026 | Out-of-bounds read vulnerability in ASR Kestrel (nr_fw modules) allows Overflow Buffers. This vulnerability is associated with program files Code/Nr/nr_fw/RA/src/NrPwrCtrl.C. This issue affects Kestrel: before… |
| CVE-2024-32634 | Media (6.1) | 0.27% | — | 16 abr 2024 | In huge memory get unmapped area check, code can never be reached because of a logical contradiction. |
| CVE-2024-32633 | Media (4) | 0.23% | — | 16 abr 2024 | An unsigned value can never be negative, so eMMC full disk test will always evaluate the same way. |
| CVE-2024-32632 | Media (6.6) | 0.23% | — | 16 abr 2024 | A value in ATCMD will be misinterpreted by printf, causing incorrect output and possibly out-of-bounds memory access |
| CVE-2024-32631 | Alta (8) | 0.33% | — | 16 abr 2024 | Out-of-Bounds read in ciCCIOTOPT in ASR180X will cause incorrect computations. |
| CVE-2024-32625 | Media (5.8) | 0.42% | — | 16 abr 2024 | In OffloadAMRWriter, a scalar field is not initialized so will contain an arbitrary value left over from earlier computations |
| CVE-2023-49701 | Crítica (9.8) | 0.49% | — | 30 nov 2023 | Memory Corruption in SIM management while USIMPhase2init |
| CVE-2023-49700 | Alta (7.5) | 0.38% | — | 30 nov 2023 | Security best practices violations, a string operation in Streamingmedia will write past the end of fixed-size destination buffer if the source buffer is too large. |
| CVE-2023-49699 | Alta (7.8) | 0.19% | — | 30 nov 2023 | Memory Corruption in IMS while calling VoLTE Streamingmedia Interface |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.