First published: Fri Nov 15 2024(Updated: )
Magma v1.8.0 and OAI EPC Federation v1.20 were discovered to contain an out-of-bounds read in the amf_as_establish_req function at /tasks/amf/amf_as.cpp. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted NAS packet.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Magma | ||
OpenAirInterface EPC Federation |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-24425 is classified as a high severity vulnerability due to its potential to cause a Denial of Service (DoS) effect.
To mitigate CVE-2024-24425, update to the latest patched version of Magma or OAI EPC Federation that addresses the out-of-bounds read issue.
CVE-2024-24425 affects Magma version 1.8.0 and OAI EPC Federation version 1.20.
The impact of CVE-2024-24425 is that it allows attackers to exploit the vulnerability leading to a Denial of Service (DoS) via crafted NAS packets.
More information about CVE-2024-24425 can typically be found in security advisories from the respective vendors, Magma and OAI.