Description
A flaw has been found in aligungr UERANSIM up to 3.3.0. This affects the function DecodePlainMmMessage in the library src/lib/nas/encode.cpp of the component nr-gnb. Executing a manipulation can lead to uncaught exception. The attack can be launched remotely. The exploit has been published and may be used. This patch is called 1ae9bf2062b57595dbcbc4bc1d0a0ccf06815bac. It is best practice to apply a patch to resolve this issue.
Published: 2026-09-28
Score: 6.9 Medium
EPSS: n/a
KEV: No
Impact: Uncaught Exception Causing Potential Remote Denial of Service
Action: Apply Patch
AI Analysis

Impact

A flaw exists in aligungr UERANSIM up to version 3.3.0 that affects the DecodePlainMmMessage function in src/lib/nas/encode.cpp. When a specially crafted message is processed, the function throws an uncaught exception, potentially terminating the process or otherwise disrupting normal service. This behavior, identified as CWE-248, allows a remote attacker to send a manipulated packet, causing denial of service or other adverse effects on the component.

Affected Systems

The vulnerability targets the aligungr UERANSIM product, specifically the nr-gnb component of the library. All releases up to and including 3.3.0 are affected; no additional versions are listed as vulnerable.

Risk and Exploitability

The CVSS score is 6.9, indicating medium severity. The EPSS score is not available, so the current likelihood of exploitation cannot be precisely quantified, though an exploit has been published and can be used remotely. The vulnerability is not listed in the CISA KEV catalog. Exploitation requires remote access to the UERANSIM instance and can be triggered by delivering a malformed message to the DecodePlainMmMessage handler.

Generated by OpenCVE AI on September 28, 2026 at 10:21 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the vendor's patch (commit 1ae9bf2062b57595dbcbc4bc1d0a0ccf06815bac) to UERANSIM to fix the DecodePlainMmMessage issue.
  • Upgrade UERANSIM installation to version 3.3.0 or later to ensure the vulnerability is resolved.
  • Limit external network access to the UERANSIM instance, or implement firewalls and segmentation to reduce the attack surface for remote exploitation.

Generated by OpenCVE AI on September 28, 2026 at 10:21 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 28 Sep 2026 09:45:00 +0000

Type Values Removed Values Added
Description A flaw has been found in aligungr UERANSIM up to 3.3.0. This affects the function DecodePlainMmMessage in the library src/lib/nas/encode.cpp of the component nr-gnb. Executing a manipulation can lead to uncaught exception. The attack can be launched remotely. The exploit has been published and may be used. This patch is called 1ae9bf2062b57595dbcbc4bc1d0a0ccf06815bac. It is best practice to apply a patch to resolve this issue.
Title aligungr UERANSIM nr-gnb encode.cpp DecodePlainMmMessage uncaught exception
First Time appeared Aligungr
Aligungr ueransim
Weaknesses CWE-248
CPEs cpe:2.3:a:aligungr:ueransim:*:*:*:*:*:*:*:*
Vendors & Products Aligungr
Aligungr ueransim
References
Metrics cvssV2_0

{'score': 5, 'vector': 'AV:N/AC:L/Au:N/C:N/I:N/A:P/E:POC/RL:OF/RC:C'}

cvssV3_0

{'score': 5.3, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L/E:P/RL:O/RC:C'}

cvssV3_1

{'score': 5.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L/E:P/RL:O/RC:C'}

cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P'}


Subscriptions

Aligungr Ueransim
cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-09-28T09:30:09.922Z

Reserved: 2026-09-27T14:15:16.089Z

Link: CVE-2026-101035

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-28T10:16:42.453

Modified: 2026-09-28T10:16:42.453

Link: CVE-2026-101035

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-28T10:30:15Z

Weaknesses