OnCell G3470A-LTE Series firmware versions v1.7.7 and prior have been identified as vulnerable due to accepting a format string from an external source as an argument. An attacker could modify an externally controlled format string to cause a memory leak and denial of service.
Solution:
Workaround:
The product uses a function that accepts a format string as an argument, but the format string originates from an external source.