CVE-2026-9301: omec-project amf Vulnerable to Improper Restriction of Operations within the Bounds of a Memory Buffer
(updated )
A vulnerability was found in omec-project amf up to 2.1.1. This vulnerability affects unknown code of the component NGReset Message Handler. Performing a manipulation results in memory corruption. The attack is possible to be carried out remotely. The exploit has been made public and could be used. It is recommended to apply a patch to fix this issue.
References
- github.com/advisories/GHSA-qm7q-rcm2-3frc
- github.com/omec-project/amf
- github.com/omec-project/amf/commit/34bc6724acc97dba1f8691e586da95b042cb612d
- github.com/omec-project/amf/issues/678
- github.com/omec-project/amf/pull/666
- nvd.nist.gov/vuln/detail/CVE-2026-9301
- vuldb.com/submit/811842
- vuldb.com/vuln/365248
- vuldb.com/vuln/365248/cti
Code Behaviors & Features
Detect and mitigate CVE-2026-9301 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →