Impact
A flaw exists in aligungr UERANSIM up to version 3.3.0 that affects the DecodePlainMmMessage function in src/lib/nas/encode.cpp. When a specially crafted message is processed, the function throws an uncaught exception, potentially terminating the process or otherwise disrupting normal service. This behavior, identified as CWE-248, allows a remote attacker to send a manipulated packet, causing denial of service or other adverse effects on the component.
Affected Systems
The vulnerability targets the aligungr UERANSIM product, specifically the nr-gnb component of the library. All releases up to and including 3.3.0 are affected; no additional versions are listed as vulnerable.
Risk and Exploitability
The CVSS score is 6.9, indicating medium severity. The EPSS score is not available, so the current likelihood of exploitation cannot be precisely quantified, though an exploit has been published and can be used remotely. The vulnerability is not listed in the CISA KEV catalog. Exploitation requires remote access to the UERANSIM instance and can be triggered by delivering a malformed message to the DecodePlainMmMessage handler.
OpenCVE Enrichment