🔐 CVE Alert

CVE-2026-75893

UNKNOWN 0.0

Heap based buffer overflow at ipaccess_proxy_read_msg()

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In osmo-bsc from 1.0.1 through 1.14.1 a heap based buffer overflow issue was found in the ipaccess_proxy_read_msg()  function via IPA frame lengths.

CWE CWE-122
Vendor osmocom
Product osmo-bsc
Published Sep 18, 2026
Stay Ahead of the Next One

Get instant alerts for osmocom osmo-bsc

Be the first to know when new unknown vulnerabilities affecting osmocom osmo-bsc are published — delivered to Slack, Telegram or Discord.

Get Free Alerts → Free · No credit card · 60 sec setup

Affected Versions

Osmocom / osmo-bsc
1.0.1 < 1.14.1

References

NVD ↗ CVE.org ↗ EPSS Data ↗
cgit.osmocom.org: https://cgit.osmocom.org/osmo-bsc/commit/?id=2852a03c153cd9418c2a86d0b2193ac41169dbb7

Credits

Nikolas Null "n0k0" - Security Researcher at mnemonic