CVE-2024-24425: Medium severity magma vulnerability
Magma v1.8.0 and OAI EPC Federation v1.20 were discovered to contain an out-of-bounds read in the amfasestablishreq function at /tasks/amf/amfas.cpp. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted NAS packet.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-24425?
CVE-2024-24425 is classified as a high severity vulnerability due to its potential to cause a Denial of Service (DoS) effect.
How do I fix CVE-2024-24425?
To mitigate CVE-2024-24425, update to the latest patched version of Magma or OAI EPC Federation that addresses the out-of-bounds read issue.
What are the affected software versions for CVE-2024-24425?
CVE-2024-24425 affects Magma version 1.8.0 and OAI EPC Federation version 1.20.
What is the impact of CVE-2024-24425?
The impact of CVE-2024-24425 is that it allows attackers to exploit the vulnerability leading to a Denial of Service (DoS) via crafted NAS packets.
Where can I find more information about CVE-2024-24425?
More information about CVE-2024-24425 can typically be found in security advisories from the respective vendors, Magma and OAI.