An invalid memory access when handling the ProtocolIE_ID field of E-RAB Setup List Context SURes messages in Athonet vEPC MME v11.4.0 allows attackers to cause a Denial of Service (DoS) to the cellular network by repeatedly initiating connections and sending a crafted payload.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
http://athonet.com | |
https://cellularsecurity.org/ransacked |
History
Fri, 15 Nov 2024 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Athonet
Athonet vepc Mmc |
|
Weaknesses | CWE-125 | |
CPEs | cpe:2.3:a:athonet:vepc_mmc:11.4.0:*:*:*:*:*:*:* | |
Vendors & Products |
Athonet
Athonet vepc Mmc |
|
Metrics |
cvssV3_1
|
Fri, 15 Nov 2024 19:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An invalid memory access when handling the ProtocolIE_ID field of E-RAB Setup List Context SURes messages in Athonet vEPC MME v11.4.0 allows attackers to cause a Denial of Service (DoS) to the cellular network by repeatedly initiating connections and sending a crafted payload. | |
References |
|
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2024-11-15T00:00:00
Updated: 2024-11-15T20:58:54.978Z
Reserved: 2024-01-25T00:00:00
Link: CVE-2024-24457
Vulnrichment
Updated: 2024-11-15T20:57:09.393Z
NVD
Status : Received
Published: 2024-11-15T20:15:19.510
Modified: 2024-11-15T21:35:10.550
Link: CVE-2024-24457
Redhat
No data.