CVE-2026-0154EPSS p13.7%

CVE-2026-0154CVE-2026-0154

Description

In Modem, there is a possible way to trigger a modem crash during a SIP REFER request due to memory corruption. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

Scoring

EPSS0.23% probability of exploitation · percentile 13.7% · 2026-06-19T12:03:05Z
Last modified2026-06-16
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.