Openairinterface

Oai-cn5g-amf

6 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.02%
  • Veröffentlicht 08.04.2026 00:00:00
  • Zuletzt bearbeitet 14.04.2026 15:47:10

OpenAirInterface v2.2.0 accepts Security Mode Complete without any integrity protection. Configuration has supported integrity NIA1 and NIA2. But if an UE sends initial registration request with only security capability IA0, OpenAirInterface accepts ...

Exploit
  • EPSS 0.03%
  • Veröffentlicht 08.04.2026 00:00:00
  • Zuletzt bearbeitet 14.04.2026 15:47:23

OpenAirInterface Version 2.2.0 has a Buffer Overflow vulnerability in processing UplinkNASTransport containing Authentication Response containing a NAS PDU with oversize response (For example 100 byte). The response is decoded by AMF and passed to th...

Exploit
  • EPSS 0.02%
  • Veröffentlicht 07.04.2026 00:00:00
  • Zuletzt bearbeitet 14.04.2026 15:45:37

In OpenAirInterface V2.2.0 AMF, Out of sequence messages causes incorrect state transition during UE registration procedure. This allows authentication to be bypassed completely. If a SecurityModeComplete message is sent after InitialUERegistration, ...

Exploit
  • EPSS 0.06%
  • Veröffentlicht 06.04.2026 00:00:00
  • Zuletzt bearbeitet 10.04.2026 18:26:05

OpenAirInterface V2.2.0 AMF crashes when it receives an NGAP message with invalid procedure code or invalid PDU-type. For example when the message specification requires InitiatingMessage but sent with successfulOutcome.

  • EPSS 0.15%
  • Veröffentlicht 07.01.2026 00:00:00
  • Zuletzt bearbeitet 29.01.2026 01:12:10

OpenAirInterface CN5G AMF<=v2.1.9 has a buffer overflow vulnerability in processing NAS messages. Unauthorized remote attackers can launch a denial-of-service attack and potentially execute malicious code by accessing port N1 and sending an imsi stri...

  • EPSS 0.16%
  • Veröffentlicht 07.01.2026 00:00:00
  • Zuletzt bearbeitet 29.01.2026 01:06:47

OpenAirInterface CN5G AMF<=v2.0.1 There is a logical error when processing JSON format requests. Unauthorized remote attackers can send malicious JSON data to AMF's SBI interface to launch a denial-of-service attack.