CVE-2026-9300 PUBLISHED

omec-project amf NGSetupRequest memory corruption

Assigner: VulDB
Reserved: 22.05.2026 Published: 23.05.2026 Updated: 23.05.2026

A vulnerability has been found in omec-project amf up to 2.1.1. This affects an unknown part of the component NGSetupRequest Handler. Such manipulation leads to memory corruption. The attack can be executed remotely. The exploit has been disclosed to the public and may be used. It is best practice to apply a patch to resolve this issue.

Metrics

CVSS Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
CVSS Score: 5.3

Product Status

Vendor omec-project
Product amf
Versions
  • Version 2.1.0 is affected
  • Version 2.1.1 is affected

Credits

  • shovon0203 (VulDB User) reporter

References

Problem Types

  • Memory Corruption CWE