Skip to main content

CWE archive

CWE-617 CVEs

Programmatic archive

789 CVEs tagged with CWE-6174 Critical, 327 High, 428 Medium, 30 Low, 0 Unrated.

CVE-2023-37019

Published Jan 22, 2025

Open5GS MME versions <= 2.6.4 contains an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface. An attacker may send an `S1Setup Request`…

CVSS 8.6 · High
Vendor/product tagsBeta · best-effort

CVE-2023-37018

Published Jan 22, 2025

Open5GS MME versions <= 2.6.4 contains an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface. An attacker may send a `UE Capability Info…

CVSS 8.6 · High
Vendor/product tagsBeta · best-effort

CVE-2023-37017

Published Jan 22, 2025

Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface. An attacker may send an `S1Setup Request` m…

CVSS 8.6 · High
Vendor/product tagsBeta · best-effort

CVE-2023-37016

Published Jan 22, 2025

Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface. An attacker may send a `UE Context Modifica…

CVSS 8.6 · High
Vendor/product tagsBeta · best-effort

CVE-2023-37015

Published Jan 22, 2025

Open5GS MME versions <= 2.6.4 contains an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface. An attacker may send a `Path Switch Reques…

CVSS 8.6 · High
Vendor/product tagsBeta · best-effort

CVE-2023-37013

Published Jan 22, 2025

Open5GS MME versions <= 2.6.4 contains an assertion that can be remotely triggered via a sufficiently large ASN.1 packet over the S1AP interface. An attacker may repeatedly send s…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2023-37012

Published Jan 22, 2025

Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface. An attacker may send an `Initial UE Message…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-37011

Published Jan 22, 2025

Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface. An attacker may send a `Handover Required`…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-37010

Published Jan 22, 2025

Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface. An attacker may send an `eNB Status Transfe…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-37009

Published Jan 22, 2025

Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface. An attacker may send a `Handover Notificati…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-37008

Published Jan 22, 2025

Open5GS MME versions <= 2.6.4 contain a buffer overflow in the ASN.1 deserialization function of the S1AP handler. This buffer overflow causes type confusion in decoded fields, le…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-37007

Published Jan 22, 2025

Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface. An attacker may send a `Handover Cancel` me…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-37006

Published Jan 22, 2025

Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface. An attacker may send a `Handover Request Ac…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-37005

Published Jan 22, 2025

Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface. An attacker may send an `Initial Context Se…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-37004

Published Jan 22, 2025

Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface. An attacker may send an `Initial Context Se…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-37003

Published Jan 22, 2025

Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface. An attacker may send an `E-RAB Setup Respon…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-37002

Published Jan 22, 2025

Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface. An attacker may send an `E-RAB Modification…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-24428

Published Jan 21, 2025

A reachable assertion in the oai_nas_5gmm_decode function of Open5GS <= 2.6.4 allows attackers to cause a Denial of Service (DoS) via a crafted NGAP packet.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-24427

Published Jan 21, 2025

A reachable assertion in the amf_ue_set_suci function of Open5GS <= 2.6.4 allows attackers to cause a Denial of Service (DoS) via a crafted NAS packet.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-24420

Published Jan 21, 2025

A reachable assertion in the decode_linked_ti_ie function of Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows attackers to cause a Denial of S…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-37029

Published Jan 21, 2025

Magma versions <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) are susceptible to an assertion-based crash when an oversized NAS packet is received. An at…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-37024

Published Jan 21, 2025

A reachable assertion in the Mobile Management Entity (MME) of Magma versions <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows remote attackers to c…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-57924

Published Jan 19, 2025

In the Linux kernel, the following vulnerability has been resolved: fs: relax assertions on failure to encode file handles Encoding file handles is usually performed by a filesy…

CVSS 5.5 · Medium
evidence mentions
8
Buzz score
33.5
Vendor/product tagsBeta · best-effort

CVE-2024-57923

Published Jan 19, 2025

In the Linux kernel, the following vulnerability has been resolved: btrfs: zlib: fix avail_in bytes for s390 zlib HW compression path Since the input data length passed to zlib_…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-21654

Published Jan 19, 2025

In the Linux kernel, the following vulnerability has been resolved: ovl: support encoding fid from inode with no alias Dmitry Safonov reported that a WARN_ON() assertion can be…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 251-275 of 789 CVEsPage 11 of 32