CVE-2024-24446: An uninitialized pointer dereference in OpenAirInterface CN5G AMF up to v2.0.0 allows attackers to cause a Denial of Ser
mediumvulnerability
security
Summary
CVE-2024-24446 is a vulnerability in OpenAirInterface CN5G AMF (a network component that manages connections in 5G systems) up to version 2.0.0 where an uninitialized pointer dereference (using a memory address that hasn't been properly set up) allows attackers to crash the system by sending a specially crafted message. This vulnerability can cause a Denial of Service (DoS, making the system unavailable to legitimate users).
Vulnerability Details
CVSS Score
6.5(medium)
EPSS (30-day exploit probability)
EPSS: 0.5%
Classification
Attack SophisticationModerate
Taxonomy References
CWE (Weakness Type)
Original source: https://nvd.nist.gov/vuln/detail/CVE-2024-24446
First tracked: February 15, 2026 at 08:49 PM
Classified by LLM (prompt v3) · confidence: 95%