Записи openairinterface
12 опубликованных записей вендора openairinterface.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 8,3 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-20 Improper Input Validation3
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')1
- CWE-121 Stack-based Buffer Overflow1
- CWE-288 Authentication Bypass Using an Alternate Path or Channel1
- CWE-294 Authentication Bypass by Capture-replay1
- CWE-369 Divide By Zero1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
12 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
39Наблюдать | CVE-2026-30079Эксплойта нет | In OpenAirInterface V2.2.0 AMF, Out of sequence messages causes incorrect state transition during UE registration procedure.openairinterface · oai-cn5g-amf · CWE-288 | Критическая9,8 | — | 0,7 % | 7 апр. 2026 г. |
34Наблюдать | CVE-2026-37232Эксплойта нет | An issue was discovered in OpenAirInterface5G 2.4.0 (nr-softmodem) in the E2SM-KPM RAN Function's PRB utilization metric calculation.openairinterface · openairinterface5g · CWE-369 | Высокая8,6 | — | 0,6 % | 1 июн. 2026 г. |
30Наблюдать | CVE-2026-30075Эксплойта нет | OpenAirInterface Version 2.2.0 has a Buffer Overflow vulnerability in processing UplinkNASTransport containing Authentication Response contaopenairinterface · oai-cn5g-amf · CWE-120 | Высокая7,5 | — | 0,7 % | 8 апр. 2026 г. |
30Наблюдать | CVE-2024-24426Эксплойта нет | Reachable assertions in the NGAP_FIND_PROTOCOLIE_BY_ID function of OpenAirInterface Magma v1.8.0 and OAI EPC Federation v1.2.0 allow attackeCWE-78 | Высокая7,5 | — | 0,5 % | 15 нояб. 2024 г. |
30Наблюдать | CVE-2026-30078Эксплойта нет | OpenAirInterface V2.2.0 AMF crashes when it receives an NGAP message with invalid procedure code or invalid PDU-type.openairinterface · oai-cn5g-amf · CWE-20 | Высокая7,5 | — | 0,5 % | 6 апр. 2026 г. |
30Наблюдать | CVE-2026-30077Эксплойта нет | OpenAirInterface V2.2.0 AMF crashes when it fails to decode the message.openairinterface · openairinterface · CWE-20 | Высокая7,5 | — | 0,5 % | 30 мар. 2026 г. |
30Наблюдать | CVE-2025-65805Эксплойта нет | OpenAirInterface CN5G AMF<=v2.1.9 has a buffer overflow vulnerability in processing NAS messages.openairinterface · oai-cn5g-amf · CWE-121 | Высокая7,5 | — | 0,4 % | 7 янв. 2026 г. |
30Наблюдать | CVE-2025-66786Эксплойта нет | OpenAirInterface CN5G AMF<=v2.0.1 There is a logical error when processing JSON format requests.openairinterface · oai-cn5g-amf · CWE-20 | Высокая7,5 | — | 0,4 % | 7 янв. 2026 г. |
30Наблюдать | CVE-2026-30080Эксплойта нет | OpenAirInterface v2.2.0 accepts Security Mode Complete without any integrity protection.openairinterface · oai-cn5g-amf · CWE-294 | Высокая7,5 | — | 0,3 % | 8 апр. 2026 г. |
26Наблюдать | CVE-2025-26265Эксплойта нет | A segmentation fault in openairinterface5g v2.1.0 allows attackers to cause a Denial of Service (DoS) via a crafted UE Context Modification openairinterface · openairinterface5g · CWE-119 | Средняя6,5 | — | 0,5 % | 27 мар. 2025 г. |
26Наблюдать | CVE-2024-24449Эксплойта нет | An uninitialized pointer dereference in the NasPdu::NasPdu component of OpenAirInterface CN5G AMF up to v2.0.0 allows attackers to cause a DCWE-824 | Средняя6,5 | — | 0,4 % | 15 нояб. 2024 г. |
26Наблюдать | CVE-2024-24446Эксплойта нет | An uninitialized pointer dereference in OpenAirInterface CN5G AMF up to v2.0.0 allows attackers to cause a Denial of Service (DoS) via a craCWE-476 | Средняя6,5 | — | 0,3 % | 15 нояб. 2024 г. |
- CVE-2026-3007939Наблюдать
In OpenAirInterface V2.2.0 AMF, Out of sequence messages causes incorrect state transition during UE registration procedure.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %openairinterface · oai-cn5g-amf7 апр. 2026 г.
- CVE-2026-3723234Наблюдать
An issue was discovered in OpenAirInterface5G 2.4.0 (nr-softmodem) in the E2SM-KPM RAN Function's PRB utilization metric calculation.
ВысокаяCVSS 8,6Эксплойта нетEPSS 1 %openairinterface · openairinterface5g1 июн. 2026 г.
- CVE-2026-3007530Наблюдать
OpenAirInterface Version 2.2.0 has a Buffer Overflow vulnerability in processing UplinkNASTransport containing Authentication Response conta
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %openairinterface · oai-cn5g-amf8 апр. 2026 г.
- CVE-2024-2442630Наблюдать
Reachable assertions in the NGAP_FIND_PROTOCOLIE_BY_ID function of OpenAirInterface Magma v1.8.0 and OAI EPC Federation v1.2.0 allow attacke
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %15 нояб. 2024 г.
- CVE-2026-3007830Наблюдать
OpenAirInterface V2.2.0 AMF crashes when it receives an NGAP message with invalid procedure code or invalid PDU-type.
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %openairinterface · oai-cn5g-amf6 апр. 2026 г.
- CVE-2026-3007730Наблюдать
OpenAirInterface V2.2.0 AMF crashes when it fails to decode the message.
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %openairinterface · openairinterface30 мар. 2026 г.
- CVE-2025-6580530Наблюдать
OpenAirInterface CN5G AMF<=v2.1.9 has a buffer overflow vulnerability in processing NAS messages.
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %openairinterface · oai-cn5g-amf7 янв. 2026 г.
- CVE-2025-6678630Наблюдать
OpenAirInterface CN5G AMF<=v2.0.1 There is a logical error when processing JSON format requests.
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %openairinterface · oai-cn5g-amf7 янв. 2026 г.
- CVE-2026-3008030Наблюдать
OpenAirInterface v2.2.0 accepts Security Mode Complete without any integrity protection.
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %openairinterface · oai-cn5g-amf8 апр. 2026 г.
- CVE-2025-2626526Наблюдать
A segmentation fault in openairinterface5g v2.1.0 allows attackers to cause a Denial of Service (DoS) via a crafted UE Context Modification
СредняяCVSS 6,5Эксплойта нетEPSS 0 %openairinterface · openairinterface5g27 мар. 2025 г.
- CVE-2024-2444926Наблюдать
An uninitialized pointer dereference in the NasPdu::NasPdu component of OpenAirInterface CN5G AMF up to v2.0.0 allows attackers to cause a D
СредняяCVSS 6,5Эксплойта нетEPSS 0 %15 нояб. 2024 г.
- CVE-2024-2444626Наблюдать
An uninitialized pointer dereference in OpenAirInterface CN5G AMF up to v2.0.0 allows attackers to cause a Denial of Service (DoS) via a cra
СредняяCVSS 6,5Эксплойта нетEPSS 0 %15 нояб. 2024 г.