openairinterface kayıtları
openairinterface üreticisine ait 12 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %8,3
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-20 Improper Input Validation3
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')1
- CWE-121 Stack-based Buffer Overflow1
- CWE-288 Authentication Bypass Using an Alternate Path or Channel1
- CWE-294 Authentication Bypass by Capture-replay1
- CWE-369 Divide By Zero1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
12 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2026-30079İstismar yok | In OpenAirInterface V2.2.0 AMF, Out of sequence messages causes incorrect state transition during UE registration procedure.openairinterface · oai-cn5g-amf · CWE-288 | Kritik9,8 | — | %0,7 | 7 Nis 2026 |
34İzleyin | CVE-2026-37232İstismar yok | An issue was discovered in OpenAirInterface5G 2.4.0 (nr-softmodem) in the E2SM-KPM RAN Function's PRB utilization metric calculation.openairinterface · openairinterface5g · CWE-369 | Yüksek8,6 | — | %0,6 | 1 Haz 2026 |
30İzleyin | CVE-2026-30075İstismar yok | OpenAirInterface Version 2.2.0 has a Buffer Overflow vulnerability in processing UplinkNASTransport containing Authentication Response contaopenairinterface · oai-cn5g-amf · CWE-120 | Yüksek7,5 | — | %0,7 | 8 Nis 2026 |
30İzleyin | CVE-2024-24426İstismar yok | Reachable assertions in the NGAP_FIND_PROTOCOLIE_BY_ID function of OpenAirInterface Magma v1.8.0 and OAI EPC Federation v1.2.0 allow attackeCWE-78 | Yüksek7,5 | — | %0,5 | 15 Kas 2024 |
30İzleyin | CVE-2026-30078İstismar yok | OpenAirInterface V2.2.0 AMF crashes when it receives an NGAP message with invalid procedure code or invalid PDU-type.openairinterface · oai-cn5g-amf · CWE-20 | Yüksek7,5 | — | %0,5 | 6 Nis 2026 |
30İzleyin | CVE-2026-30077İstismar yok | OpenAirInterface V2.2.0 AMF crashes when it fails to decode the message.openairinterface · openairinterface · CWE-20 | Yüksek7,5 | — | %0,5 | 30 Mar 2026 |
30İzleyin | CVE-2025-65805İstismar yok | OpenAirInterface CN5G AMF<=v2.1.9 has a buffer overflow vulnerability in processing NAS messages.openairinterface · oai-cn5g-amf · CWE-121 | Yüksek7,5 | — | %0,4 | 7 Oca 2026 |
30İzleyin | CVE-2025-66786İstismar yok | OpenAirInterface CN5G AMF<=v2.0.1 There is a logical error when processing JSON format requests.openairinterface · oai-cn5g-amf · CWE-20 | Yüksek7,5 | — | %0,4 | 7 Oca 2026 |
30İzleyin | CVE-2026-30080İstismar yok | OpenAirInterface v2.2.0 accepts Security Mode Complete without any integrity protection.openairinterface · oai-cn5g-amf · CWE-294 | Yüksek7,5 | — | %0,3 | 8 Nis 2026 |
26İzleyin | CVE-2025-26265İstismar yok | A segmentation fault in openairinterface5g v2.1.0 allows attackers to cause a Denial of Service (DoS) via a crafted UE Context Modification openairinterface · openairinterface5g · CWE-119 | Orta6,5 | — | %0,5 | 27 Mar 2025 |
26İzleyin | CVE-2024-24449İstismar yok | An uninitialized pointer dereference in the NasPdu::NasPdu component of OpenAirInterface CN5G AMF up to v2.0.0 allows attackers to cause a DCWE-824 | Orta6,5 | — | %0,4 | 15 Kas 2024 |
26İzleyin | CVE-2024-24446İstismar yok | An uninitialized pointer dereference in OpenAirInterface CN5G AMF up to v2.0.0 allows attackers to cause a Denial of Service (DoS) via a craCWE-476 | Orta6,5 | — | %0,3 | 15 Kas 2024 |
- CVE-2026-3007939İzleyin
In OpenAirInterface V2.2.0 AMF, Out of sequence messages causes incorrect state transition during UE registration procedure.
KritikCVSS 9,8İstismar yokEPSS %1openairinterface · oai-cn5g-amf7 Nis 2026
- CVE-2026-3723234İzleyin
An issue was discovered in OpenAirInterface5G 2.4.0 (nr-softmodem) in the E2SM-KPM RAN Function's PRB utilization metric calculation.
YüksekCVSS 8,6İstismar yokEPSS %1openairinterface · openairinterface5g1 Haz 2026
- CVE-2026-3007530İzleyin
OpenAirInterface Version 2.2.0 has a Buffer Overflow vulnerability in processing UplinkNASTransport containing Authentication Response conta
YüksekCVSS 7,5İstismar yokEPSS %1openairinterface · oai-cn5g-amf8 Nis 2026
- CVE-2024-2442630İzleyin
Reachable assertions in the NGAP_FIND_PROTOCOLIE_BY_ID function of OpenAirInterface Magma v1.8.0 and OAI EPC Federation v1.2.0 allow attacke
YüksekCVSS 7,5İstismar yokEPSS %015 Kas 2024
- CVE-2026-3007830İzleyin
OpenAirInterface V2.2.0 AMF crashes when it receives an NGAP message with invalid procedure code or invalid PDU-type.
YüksekCVSS 7,5İstismar yokEPSS %0openairinterface · oai-cn5g-amf6 Nis 2026
- CVE-2026-3007730İzleyin
OpenAirInterface V2.2.0 AMF crashes when it fails to decode the message.
YüksekCVSS 7,5İstismar yokEPSS %0openairinterface · openairinterface30 Mar 2026
- CVE-2025-6580530İzleyin
OpenAirInterface CN5G AMF<=v2.1.9 has a buffer overflow vulnerability in processing NAS messages.
YüksekCVSS 7,5İstismar yokEPSS %0openairinterface · oai-cn5g-amf7 Oca 2026
- CVE-2025-6678630İzleyin
OpenAirInterface CN5G AMF<=v2.0.1 There is a logical error when processing JSON format requests.
YüksekCVSS 7,5İstismar yokEPSS %0openairinterface · oai-cn5g-amf7 Oca 2026
- CVE-2026-3008030İzleyin
OpenAirInterface v2.2.0 accepts Security Mode Complete without any integrity protection.
YüksekCVSS 7,5İstismar yokEPSS %0openairinterface · oai-cn5g-amf8 Nis 2026
- CVE-2025-2626526İzleyin
A segmentation fault in openairinterface5g v2.1.0 allows attackers to cause a Denial of Service (DoS) via a crafted UE Context Modification
OrtaCVSS 6,5İstismar yokEPSS %0openairinterface · openairinterface5g27 Mar 2025
- CVE-2024-2444926İzleyin
An uninitialized pointer dereference in the NasPdu::NasPdu component of OpenAirInterface CN5G AMF up to v2.0.0 allows attackers to cause a D
OrtaCVSS 6,5İstismar yokEPSS %015 Kas 2024
- CVE-2024-2444626İzleyin
An uninitialized pointer dereference in OpenAirInterface CN5G AMF up to v2.0.0 allows attackers to cause a Denial of Service (DoS) via a cra
OrtaCVSS 6,5İstismar yokEPSS %015 Kas 2024