CVE-2026-9300

Source
https://cve.org/CVERecord?id=CVE-2026-9300
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-9300.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-9300
Aliases
Downstream
Related
Published
2026-05-23T11:45:12Z
Modified
2026-08-12T03:51:18Z
Severity
  • 2.1 (Low) CVSS_V4 - CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P CVSS Calculator
Summary
omec-project amf NGSetupRequest memory corruption
Details

A vulnerability has been found in omec-project amf up to 2.1.1. This affects an unknown part of the component NGSetupRequest Handler. Such manipulation leads to memory corruption. The attack can be executed remotely. The exploit has been disclosed to the public and may be used. It is best practice to apply a patch to resolve this issue.

Database specific
{
    "cna_assigner": "VulDB",
    "cwe_ids": [
        "CWE-119"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/9xxx/CVE-2026-9300.json"
}
References

Affected packages

Git / github.com/omec-project/amf

Affected ranges

Type
GIT
Repo
https://github.com/omec-project/amf
Events
Database specific
Show details
{
    "extracted_events": [
        {
            "introduced": "2.1.0"
        },
        {
            "last_affected": "2.1.0"
        },
        {
            "introduced": "2.1.1"
        },
        {
            "last_affected": "2.1.1"
        }
    ],
    "source": "AFFECTED_FIELD"
}

Affected versions

2.*
2.1.0
2.1.1
v2.*
v2.1.0
v2.1.1

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-9300.json"