Medium severity6.3NVD Advisory· Published May 23, 2026· Updated Jul 23, 2026
CVE-2026-9301
CVE-2026-9301
Description
A vulnerability was found in omec-project amf up to 2.1.1. This vulnerability affects unknown code of the component NGReset Message Handler. Performing a manipulation results in memory corruption. The attack is possible to be carried out remotely. The exploit has been made public and could be used. It is recommended to apply a patch to fix this issue.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
github.com/omec-project/amfGo | < 1.7.1-0.20260421213846-34bc6724acc9 | 1.7.1-0.20260421213846-34bc6724acc9 |
Affected products
2- osv-coordsRange: < 0.0.20260723T184607-160000.1.1
Patches
Vulnerability mechanics
References
8- github.com/advisories/GHSA-qm7q-rcm2-3frcghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2026-9301ghsaADVISORY
- github.com/omec-project/amf/commit/34bc6724acc97dba1f8691e586da95b042cb612dghsaWEB
- github.com/omec-project/amf/issues/678nvdWEB
- github.com/omec-project/amf/pull/666nvdWEB
- vuldb.com/submit/811842nvdWEB
- vuldb.com/vuln/365248nvdWEB
- vuldb.com/vuln/365248/ctinvdWEB
News mentions
1- Free5GC AMF: Four Memory Corruption CVEs Disclosed in NGAP HandlersVypr Intelligence · May 23, 2026