Impact
FlexRIC v2.0.0 contains hardcoded assertions that enforce exact Information Element counts in decoded E2AP messages. When an attacker sends a packet with a non‑standard number of elements, the assertions trigger a SIGABRT and crash the near‑RT RIC or iApp service, causing a denial of service to all users of the platform. This flaw is a functional incompatibility rather than a data breach, but it can be used to interrupt critical RAN control plane operations.
Affected Systems
The vulnerability affects FlexRIC version 2.0.0. Near‑RT RIC listens on TCP port 36421, while the iApp component listens on port 36422. Any system running these components and accepting E2AP PDUs is susceptible.
Risk and Exploitability
The flaw is exploitable by any party that can reach the exposed ports; no authentication is required. Because the attack requires crafting a valid E2AP PDU, it is limited to E2AP traffic but can be performed over normal network connections. EPSS data is not available, and the vulnerability is not listed in the CISA KEV catalog. The CVSS score of 7.5 indicates a medium‑to‑high severity, reinforcing the high risk due to the impact and ease of remote exploitation.
OpenCVE Enrichment