CVE-2023-40998: Buffer Overflow
Published Aug 28, 2023
·Updated
Buffer Overflow vulnerability in O-RAN Software Community ric-plt-lib-rmr v.4.9.0 allows a remote attacker to cause a denial of service via the packet size component.
Affected Software
1 affected component
O-ran-sc Ric Message Router=4.9.0
Event History
Aug 28, 2023
CVE Published
12:00 AM
Data Sourced
12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-40998?
CVE-2023-40998 is classified as a high severity vulnerability due to its potential to cause denial of service.
2
How do I fix CVE-2023-40998?
To fix CVE-2023-40998, upgrade the O-RAN Software Community ric-plt-lib-rmr to version 4.9.1 or later.
3
What systems are affected by CVE-2023-40998?
CVE-2023-40998 specifically affects version 4.9.0 of the O-RAN Software Community ric_message_router.
4
What kind of attack does CVE-2023-40998 enable?
CVE-2023-40998 enables remote attackers to exploit a buffer overflow, leading to denial of service.
5
Is there a workaround for CVE-2023-40998?
Currently, the recommended action is to upgrade to a patched version, as no official workaround is provided.