O-RAN Software Community ric-plt-lib-rmr v4.9.0 does not validate the source of the routing tables it receives, potentially allowing attackers to send forged routing tables to the device.
References
Configurations
History
21 Nov 2024, 08:21
Type | Values Removed | Values Added |
---|---|---|
References | () https://jira.o-ran-sc.org/browse/RIC-1001 - Vendor Advisory | |
References | () https://www.trendmicro.com/en_us/research/23/l/the-current-state-of-open-ran-security.html - |
14 Dec 2023, 08:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-09-01 17:15
Updated : 2024-11-21 08:21
NVD link : CVE-2023-41627
Mitre link : CVE-2023-41627
CVE.ORG link : CVE-2023-41627
JSON object : View
Products Affected
o-ran-sc
- ric_message_router
CWE