Null pointer dereference vulnerability in the Mobile...
Moderate severity
Unreviewed
Published
Jan 22, 2025
to the GitHub Advisory Database
•
Updated Jan 23, 2025
Description
Published by the National Vulnerability Database
Jan 21, 2025
Published to the GitHub Advisory Database
Jan 22, 2025
Last updated
Jan 23, 2025
Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP
E-RAB Modification Indication
packet missing an expectedeNB_UE_S1AP_ID
field.References