CVE-2023-37032

A Stack-based buffer overflow in the Mobile Management Entity (MME) of Magma versions <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows remote attackers to crash the MME with an unauthenticated cellphone by sending a NAS packet containing an oversized `Emergency Number List` Information Element.
References
Link Resource
https://cellularsecurity.org/ransacked Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:linuxfoundation:magma:*:*:*:*:*:*:*:*

History

13 Mar 2025, 15:15

Type Values Removed Values Added
CWE CWE-78

18 Feb 2025, 21:15

Type Values Removed Values Added
CWE CWE-120

27 Jan 2025, 14:34

Type Values Removed Values Added
CWE CWE-787
First Time Linuxfoundation
Linuxfoundation magma
References () https://cellularsecurity.org/ransacked - () https://cellularsecurity.org/ransacked - Exploit, Third Party Advisory
CPE cpe:2.3:a:linuxfoundation:magma:*:*:*:*:*:*:*:*

23 Jan 2025, 16:15

Type Values Removed Values Added
CWE CWE-120
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
Summary
  • (es) Un desbordamiento de búfer basado en pila en la entidad de administración móvil (MME) de las versiones de Magma &lt;= 1.8.0 (corregido en v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) permite a atacantes remotos bloquear la MME con un teléfono celular no autenticado mediante el envío de un paquete NAS que contiene un elemento de información de "Lista de números de emergencia" de gran tamaño.

21 Jan 2025, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-21 23:15

Updated : 2025-03-13 15:15


NVD link : CVE-2023-37032

Mitre link : CVE-2023-37032

CVE.ORG link : CVE-2023-37032


JSON object : View

Products Affected

linuxfoundation

  • magma
CWE
CWE-787

Out-of-bounds Write

CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')