2024-05-25 21:48:12 +02:00
### [CVE-2023-20702](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-20702)



### Description
In 5G NRLC, there is a possible invalid memory access due to lack of error handling. This could lead to remote denial of service, if UE received invalid 1-byte rlc sdu, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY00921261; Issue ID: MOLY01128895.
### POC
#### Reference
No PoCs from references.
#### Github
2024-05-28 08:49:17 +00:00
- https://github.com/AEPP294/5ghoul-5g-nr-attacks
2024-05-25 21:48:12 +02:00
- https://github.com/Shangzewen/U-Fuzz
- https://github.com/asset-group/5ghoul-5g-nr-attacks
- https://github.com/asset-group/U-Fuzz