CVE-2023-37031
- EPSS 0.38%
- Veröffentlicht 21.01.2025 23:15:10
- Zuletzt bearbeitet 19.03.2025 15:15:45
A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `eNB Configuration Transfe...
CVE-2023-37030
- EPSS 0.38%
- Veröffentlicht 21.01.2025 23:15:10
- Zuletzt bearbeitet 25.03.2025 15:15:18
A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `Initial UE Message` packe...
CVE-2023-37029
- EPSS 0.62%
- Veröffentlicht 21.01.2025 23:15:10
- Zuletzt bearbeitet 27.01.2025 14:39:48
Magma versions <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) are susceptible to an assertion-based crash when an oversized NAS packet is received. An attacker may leverage this behavior to repeatedly crash the MME via eithe...
CVE-2023-37028
- EPSS 0.41%
- Veröffentlicht 21.01.2025 23:15:10
- Zuletzt bearbeitet 13.03.2025 20:15:15
A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `E-RAB Modification Indica...
CVE-2023-37024
- EPSS 0.73%
- Veröffentlicht 21.01.2025 23:15:09
- Zuletzt bearbeitet 23.01.2025 19:29:27
A reachable assertion in the Mobile Management Entity (MME) of Magma versions <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows remote attackers to crash the MME with an unauthenticated cellphone by sending a NAS packet ...
CVE-2023-37027
- EPSS 0.38%
- Veröffentlicht 21.01.2025 23:15:09
- Zuletzt bearbeitet 18.03.2025 20:15:20
Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `E-RAB Modification Indicati...
CVE-2023-37026
- EPSS 0.25%
- Veröffentlicht 21.01.2025 23:15:09
- Zuletzt bearbeitet 23.01.2025 19:29:27
A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `E-RAB Release Response` p...
CVE-2023-37025
- EPSS 0.38%
- Veröffentlicht 21.01.2025 23:15:09
- Zuletzt bearbeitet 23.01.2025 19:29:27
A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `Reset` packet missing an ...