omec-project amf Vulnerable to Improper Restriction of Operations within the Bounds of a Memory Buffer
Low severity
GitHub Reviewed
Published
May 26, 2026
to the GitHub Advisory Database
•
Updated Jun 30, 2026
Package
Affected versions
< 1.7.1-0.20260421213846-34bc6724acc9
Patched versions
1.7.1-0.20260421213846-34bc6724acc9
Description
Published by the National Vulnerability Database
May 23, 2026
Published to the GitHub Advisory Database
May 26, 2026
Reviewed
Jun 30, 2026
Last updated
Jun 30, 2026
A flaw has been found in omec-project amf up to 2.1.1. Affected by this issue is the function PDUSessionResourceModifyIndication of the file /go/src/amf/ngap/handler.go. This manipulation causes memory corruption. Remote exploitation of the attack is possible. The exploit has been published and may be used. Applying a patch is the recommended action to fix this issue.
References