openairinterface records
12 published records for vendor openairinterface.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 8.3%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-20 Improper Input Validation3
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')1
- CWE-121 Stack-based Buffer Overflow1
- CWE-288 Authentication Bypass Using an Alternate Path or Channel1
- CWE-294 Authentication Bypass by Capture-replay1
- CWE-369 Divide By Zero1
The weakness classes this vendor ships most often: where to look.
CWEAll records
12 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2026-30079No exploit | In OpenAirInterface V2.2.0 AMF, Out of sequence messages causes incorrect state transition during UE registration procedure.openairinterface · oai-cn5g-amf · CWE-288 | Critical9.8 | — | 0.7% | Apr 7, 2026 |
34Monitor | CVE-2026-37232No exploit | An issue was discovered in OpenAirInterface5G 2.4.0 (nr-softmodem) in the E2SM-KPM RAN Function's PRB utilization metric calculation.openairinterface · openairinterface5g · CWE-369 | High8.6 | — | 0.6% | Jun 1, 2026 |
30Monitor | CVE-2026-30075No exploit | OpenAirInterface Version 2.2.0 has a Buffer Overflow vulnerability in processing UplinkNASTransport containing Authentication Response contaopenairinterface · oai-cn5g-amf · CWE-120 | High7.5 | — | 0.7% | Apr 8, 2026 |
30Monitor | CVE-2024-24426No exploit | Reachable assertions in the NGAP_FIND_PROTOCOLIE_BY_ID function of OpenAirInterface Magma v1.8.0 and OAI EPC Federation v1.2.0 allow attackeCWE-78 | High7.5 | — | 0.5% | Nov 15, 2024 |
30Monitor | CVE-2026-30078No exploit | OpenAirInterface V2.2.0 AMF crashes when it receives an NGAP message with invalid procedure code or invalid PDU-type.openairinterface · oai-cn5g-amf · CWE-20 | High7.5 | — | 0.5% | Apr 6, 2026 |
30Monitor | CVE-2026-30077No exploit | OpenAirInterface V2.2.0 AMF crashes when it fails to decode the message.openairinterface · openairinterface · CWE-20 | High7.5 | — | 0.5% | Mar 30, 2026 |
30Monitor | CVE-2025-65805No exploit | OpenAirInterface CN5G AMF<=v2.1.9 has a buffer overflow vulnerability in processing NAS messages.openairinterface · oai-cn5g-amf · CWE-121 | High7.5 | — | 0.4% | Jan 7, 2026 |
30Monitor | CVE-2025-66786No exploit | OpenAirInterface CN5G AMF<=v2.0.1 There is a logical error when processing JSON format requests.openairinterface · oai-cn5g-amf · CWE-20 | High7.5 | — | 0.4% | Jan 7, 2026 |
30Monitor | CVE-2026-30080No exploit | OpenAirInterface v2.2.0 accepts Security Mode Complete without any integrity protection.openairinterface · oai-cn5g-amf · CWE-294 | High7.5 | — | 0.3% | Apr 8, 2026 |
26Monitor | CVE-2025-26265No exploit | A segmentation fault in openairinterface5g v2.1.0 allows attackers to cause a Denial of Service (DoS) via a crafted UE Context Modification openairinterface · openairinterface5g · CWE-119 | Medium6.5 | — | 0.5% | Mar 27, 2025 |
26Monitor | CVE-2024-24449No exploit | An uninitialized pointer dereference in the NasPdu::NasPdu component of OpenAirInterface CN5G AMF up to v2.0.0 allows attackers to cause a DCWE-824 | Medium6.5 | — | 0.4% | Nov 15, 2024 |
26Monitor | CVE-2024-24446No exploit | An uninitialized pointer dereference in OpenAirInterface CN5G AMF up to v2.0.0 allows attackers to cause a Denial of Service (DoS) via a craCWE-476 | Medium6.5 | — | 0.3% | Nov 15, 2024 |
- CVE-2026-3007939Monitor
In OpenAirInterface V2.2.0 AMF, Out of sequence messages causes incorrect state transition during UE registration procedure.
CriticalCVSS 9.8No exploitEPSS 1%openairinterface · oai-cn5g-amfApr 7, 2026
- CVE-2026-3723234Monitor
An issue was discovered in OpenAirInterface5G 2.4.0 (nr-softmodem) in the E2SM-KPM RAN Function's PRB utilization metric calculation.
HighCVSS 8.6No exploitEPSS 1%openairinterface · openairinterface5gJun 1, 2026
- CVE-2026-3007530Monitor
OpenAirInterface Version 2.2.0 has a Buffer Overflow vulnerability in processing UplinkNASTransport containing Authentication Response conta
HighCVSS 7.5No exploitEPSS 1%openairinterface · oai-cn5g-amfApr 8, 2026
- CVE-2024-2442630Monitor
Reachable assertions in the NGAP_FIND_PROTOCOLIE_BY_ID function of OpenAirInterface Magma v1.8.0 and OAI EPC Federation v1.2.0 allow attacke
HighCVSS 7.5No exploitEPSS 0%Nov 15, 2024
- CVE-2026-3007830Monitor
OpenAirInterface V2.2.0 AMF crashes when it receives an NGAP message with invalid procedure code or invalid PDU-type.
HighCVSS 7.5No exploitEPSS 0%openairinterface · oai-cn5g-amfApr 6, 2026
- CVE-2026-3007730Monitor
OpenAirInterface V2.2.0 AMF crashes when it fails to decode the message.
HighCVSS 7.5No exploitEPSS 0%openairinterface · openairinterfaceMar 30, 2026
- CVE-2025-6580530Monitor
OpenAirInterface CN5G AMF<=v2.1.9 has a buffer overflow vulnerability in processing NAS messages.
HighCVSS 7.5No exploitEPSS 0%openairinterface · oai-cn5g-amfJan 7, 2026
- CVE-2025-6678630Monitor
OpenAirInterface CN5G AMF<=v2.0.1 There is a logical error when processing JSON format requests.
HighCVSS 7.5No exploitEPSS 0%openairinterface · oai-cn5g-amfJan 7, 2026
- CVE-2026-3008030Monitor
OpenAirInterface v2.2.0 accepts Security Mode Complete without any integrity protection.
HighCVSS 7.5No exploitEPSS 0%openairinterface · oai-cn5g-amfApr 8, 2026
- CVE-2025-2626526Monitor
A segmentation fault in openairinterface5g v2.1.0 allows attackers to cause a Denial of Service (DoS) via a crafted UE Context Modification
MediumCVSS 6.5No exploitEPSS 0%openairinterface · openairinterface5gMar 27, 2025
- CVE-2024-2444926Monitor
An uninitialized pointer dereference in the NasPdu::NasPdu component of OpenAirInterface CN5G AMF up to v2.0.0 allows attackers to cause a D
MediumCVSS 6.5No exploitEPSS 0%Nov 15, 2024
- CVE-2024-2444626Monitor
An uninitialized pointer dereference in OpenAirInterface CN5G AMF up to v2.0.0 allows attackers to cause a Denial of Service (DoS) via a cra
MediumCVSS 6.5No exploitEPSS 0%Nov 15, 2024