cve/2024/CVE-2024-37877.md
2024-06-22 09:37:59 +00:00

727 B

CVE-2024-37877

Description

UERANSIM before 3.2.6 allows out-of-bounds read when a RLS packet is sent to gNodeB with malformed PDU length. This occurs in function readOctetString in src/utils/octet_view.cpp and in function DecodeRlsMessage in src/lib/rls/rls_pdu.cpp

POC

Reference

Github

No PoCs found on GitHub currently.