Beveiligingsadvies

CVE-2024-24445

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-01-21 00:00:00
Laatst bijgewerkt 2026-07-07 16:39:46
Toegewezen door mitre
CVSS-score 6.5
Status PUBLISHED

Beschrijving

OpenAirInterface CN5G AMF (oai-cn5g-amf) <= 2.0.0 contains a null dereference in its handling of unsupported NGAP protocol messages which allows an attacker with network-adjacent access to the AMF to carry out denial of service. When a procedure code/presence field tuple is received that is unsupported, OAI indexes into a null function pointer and subsequently dereferences it.