CVE Vulnerabilities

CVE-2023-41627

Published: Sep 01, 2023 | Modified: Dec 14, 2023
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

O-RAN Software Community ric-plt-lib-rmr v4.9.0 does not validate the source of the routing tables it receives, potentially allowing attackers to send forged routing tables to the device.

Affected Software

Name Vendor Start Version End Version
Ric_message_router O-ran-sc 4.9.0 (including) 4.9.0 (including)

References