CVE-2025-26265

A segmentation fault in openairinterface5g v2.1.0 allows attackers to cause a Denial of Service (DoS) via a crafted UE Context Modification response.
Configurations

Configuration 1 (hide)

cpe:2.3:a:openairinterface:openairinterface5g:2.1.0:*:*:*:*:*:*:*

History

11 Apr 2025, 17:24

Type Values Removed Values Added
First Time Openairinterface
Openairinterface openairinterface5g
Summary
  • (es) Una falla de segmentación en openairinterface5g v2.1.0 permite a los atacantes provocar una denegación de servicio (DoS) a través de una respuesta de modificación de contexto de UE manipulada.
CPE cpe:2.3:a:openairinterface:openairinterface5g:2.1.0:*:*:*:*:*:*:*
References () https://anonymous.4open.science/r/Mobicom-ARCANE-36B7/README.md - () https://anonymous.4open.science/r/Mobicom-ARCANE-36B7/README.md - Exploit
References () https://gitlab.eurecom.fr/oai/openairinterface5g - () https://gitlab.eurecom.fr/oai/openairinterface5g - Product
References () https://www.sigmobile.org/mobicom/2025/ - () https://www.sigmobile.org/mobicom/2025/ - Not Applicable

28 Mar 2025, 15:15

Type Values Removed Values Added
CWE CWE-119
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5

27 Mar 2025, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-27 16:15

Updated : 2025-04-11 17:24


NVD link : CVE-2025-26265

Mitre link : CVE-2025-26265

CVE.ORG link : CVE-2025-26265


JSON object : View

Products Affected

openairinterface

  • openairinterface5g
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer