Magma
28 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Magma, a product in the ai ml space. Use it to gauge the current risk picture and drill into individual advisories.
Magma CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 22 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 6 |
| 2026-09 | 0 |
Severity
How the 28 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical1
- High11
- Medium16
Latest CVEs
The 15 most recently published vulnerabilities affecting Magma.
- CVE-2026-82552Linux Foundation Magma gNB Termination ngap_amf.c denial of service4.3
- CVE-2026-82551Linux Foundation Magma NGSetup ngap_amf_handlers.c state issue5.3
- CVE-2026-82550Linux Foundation Magma NGSetupRequest input validation5.3
- CVE-2026-82549Linux Foundation Magma SecurityModeComplete integrity check8.3
- CVE-2026-82548Linux Foundation Magma InitialUEMessage information disclosure5.3
- CVE-2026-82547Linux Foundation Magma Registration Complete Message amf_fsm.cpp improper authentication6.5
- CVE-2024-24423The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a buffer overflow in the decode_esm_message_container function at /nas/...7.5
- CVE-2024-24422The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a stack overflow in the decode_protocol_configuration_options function ...7.5
- CVE-2024-24417The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a buffer overflow in the decode_protocol_configuration_options function...7.5
- CVE-2024-24419The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a buffer overflow in the decode_traffic_flow_template_packet_filter fun...7.5
- CVE-2024-24418The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a buffer overflow in the decode_pdn_address function at /nas/ies/PdnAdd...7.5
- CVE-2024-24416The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a buffer overflow in the decode_access_point_name_ie function at /3gpp/...7.5
- CVE-2024-24421A type confusion in the nas_message_decode function of Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows attackers to execute arbitrary code or cause a Denial of...9.8
- CVE-2024-24420A reachable assertion in the decode_linked_ti_ie function of Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows attackers to cause a Denial of Service (DoS) via a...7.5
- CVE-2023-37036A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to...6.5
Product grouping is registry-driven, with AI assist and human review. How it works