PT-2026-29085 · Unknown · Openairinterface
Tasnim
·
Publicado
2026-03-30
·
Atualizado
2026-03-30
·
CVE-2026-30077
CVSS v3.1
7.5
Alta
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
OpenAirInterface version 2.2.0
Description
The AMF component within OpenAirInterface experiences crashes when it encounters failures during message decoding. While not all decoding failures lead to a crash, specific inputs consistently trigger the issue. An example of a crashing input, represented in hexadecimal stream, is '80 00 00 0E 00 00 01 00 0F 80 02 02 40 00 58 00 01 88'.
Recommendations
Update to a newer version of OpenAirInterface that addresses the message decoding issue in the AMF component.
Correção
RCE
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Openairinterface