{"api_version":"1","generated_at":"2026-07-24T20:07:43+00:00","cve":"CVE-2023-29726","urls":{"html":"https://cve.report/CVE-2023-29726","api":"https://cve.report/api/cve/CVE-2023-29726.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2023-29726","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2023-29726"},"summary":{"title":"CVE-2023-29726","description":"The Call Blocker application 6.6.3 for Android incorrectly opens a key component that an attacker can use to inject large amounts of dirty data into the application's database. When the application starts, it loads the data from the database into memory. Once the attacker injects too much data, the application triggers an OOM error and crashes, resulting in a persistent denial of service.","state":"PUBLIC","assigner":"cve@mitre.org","published_at":"2023-05-30 23:15:00","updated_at":"2023-06-07 02:39:00"},"problem_types":["CWE-404"],"metrics":[],"references":[{"url":"https://github.com/LianKee/SO-CVEs/blob/main/CVEs/CVE-2023-29726/CVE%20detail.md","name":"https://github.com/LianKee/SO-CVEs/blob/main/CVEs/CVE-2023-29726/CVE%20detail.md","refsource":"MISC","tags":[],"title":"SO-CVEs/CVE detail.md at main · LianKee/SO-CVEs · GitHub","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"https://play.google.com/store/apps/details?id=com.cuiet.blockCalls","name":"https://play.google.com/store/apps/details?id=com.cuiet.blockCalls","refsource":"MISC","tags":[],"title":"Call Blocker - Block Callers - Apps on Google Play","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.call-blocker.info/","name":"https://www.call-blocker.info/","refsource":"MISC","tags":[],"title":"Call Blocker – Call Blocker – block incoming and outgoing calls","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2023-29726","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2023-29726","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2023","cve_id":"29726","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"applika","cpe5":"call_blocker","cpe6":"6.6.3","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"android","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[{"cve":"CVE-2023-29726","qid":"630914","title":"Call Blocker application For Android Insufficient Information Vulnerability"},{"cve":"CVE-2023-29726","qid":"630916","title":"For ios Vulnerability CVE-2023-29726"}]},"source_records":{"cve_program":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2023-29726","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"The Call Blocker application 6.6.3 for Android incorrectly opens a key component that an attacker can use to inject large amounts of dirty data into the application's database. When the application starts, it loads the data from the database into memory. Once the attacker injects too much data, the application triggers an OOM error and crashes, resulting in a persistent denial of service."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"url":"https://play.google.com/store/apps/details?id=com.cuiet.blockCalls","refsource":"MISC","name":"https://play.google.com/store/apps/details?id=com.cuiet.blockCalls"},{"url":"https://www.call-blocker.info/","refsource":"MISC","name":"https://www.call-blocker.info/"},{"refsource":"MISC","name":"https://github.com/LianKee/SO-CVEs/blob/main/CVEs/CVE-2023-29726/CVE%20detail.md","url":"https://github.com/LianKee/SO-CVEs/blob/main/CVEs/CVE-2023-29726/CVE%20detail.md"}]}},"nvd":{"publishedDate":"2023-05-30 23:15:00","lastModifiedDate":"2023-06-07 02:39:00","problem_types":["CWE-404"],"metrics":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":7.5,"baseSeverity":"HIGH"},"exploitabilityScore":3.9,"impactScore":3.6}},"configurations":{"CVE_data_version":"4.0","nodes":[{"operator":"OR","children":[],"cpe_match":[{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:applika:call_blocker:6.6.3:*:*:*:*:android:*:*","cpe_name":[]}]}]}},"legacy_mitre":{"record":null,"notes":[]}}}