Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-fxvj-wqv2-xgcq | AMF Improperly Restricts Operations within the Bounds of a Memory Buffer |
Mon, 18 May 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 18 May 2026 01:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was determined in omec-project amf up to 2.1.3-dev. Impacted is the function NGSetupRequest of the file ngap/handler.go. Executing a manipulation of the argument InformationElement can lead to memory corruption. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized. Upgrading to version 2.2.0 is recommended to address this issue. The affected component should be upgraded. The same pull request fixes multiple security issues. | |
| Title | omec-project amf handler.go NGSetupRequest memory corruption | |
| First Time appeared |
Omec-project
Omec-project amf |
|
| Weaknesses | CWE-119 | |
| CPEs | cpe:2.3:a:omec-project:amf:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Omec-project
Omec-project amf |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-05-18T17:51:33.189Z
Reserved: 2026-05-17T09:55:52.168Z
Link: CVE-2026-8779
Updated: 2026-05-18T14:31:14.150Z
Status : Deferred
Published: 2026-05-18T02:16:37.180
Modified: 2026-06-17T11:04:27.327
Link: CVE-2026-8779
No data.
OpenCVE Enrichment
Updated: 2026-05-18T03:00:13Z
Github GHSA