CVE-2023-41627: High severity o-ran sc ric message router vulnerability
O-RAN Software Community ric-plt-lib-rmr v4.9.0 does not validate the source of the routing tables it receives, potentially allowing attackers to send forged routing tables to the device.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-41627?
The severity of CVE-2023-41627 is classified as high due to the potential for attackers to send forged routing tables.
How do I fix CVE-2023-41627?
To fix CVE-2023-41627, update the O-RAN Software Community ric-plt-lib-rmr to a version that includes validation of source routing tables.
What systems are affected by CVE-2023-41627?
CVE-2023-41627 affects the O-RAN Software Community ric_message_router version 4.9.0.
What kind of attacks can exploit CVE-2023-41627?
CVE-2023-41627 can be exploited to inject false routing table information, potentially leading to network disruptions or unauthorized access.
Is there a workaround for CVE-2023-41627?
There are no known workarounds for CVE-2023-41627, and updating to a secure version is recommended.