OpenAirInterface v2.2.0 accepts Security Mode Complete without any integrity protection. Configuration has supported integrity NIA1 and NIA2. But if an UE sends initial registration request with only security capability IA0, OpenAirInterface accepts and proceeds. This downgrade security context can lead to the possibility of replay attack.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://gitlab.eurecom.fr/oai/cn5g/oai-cn5g-amf/-/issues/78 |
|
History
Wed, 08 Apr 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | OpenAirInterface v2.2.0 accepts Security Mode Complete without any integrity protection. Configuration has supported integrity NIA1 and NIA2. But if an UE sends initial registration request with only security capability IA0, OpenAirInterface accepts and proceeds. This downgrade security context can lead to the possibility of replay attack. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-04-08T16:04:37.407Z
Reserved: 2026-03-04T00:00:00.000Z
Link: CVE-2026-30080
No data.
Status : Received
Published: 2026-04-08T17:21:18.623
Modified: 2026-04-08T17:21:18.623
Link: CVE-2026-30080
No data.
OpenCVE Enrichment
No data.