FlexRIC Duplicate E2 Setup Request Assertion Crash Vulnerability

Vulnerability

A denial-of-service vulnerability has been identified in FlexRIC version 2.0.0. The issue arises when the application receives duplicate E2_SETUP_REQUEST messages from the same or a spoofed E2 node. The iApp registry incorrectly handles duplicate node IDs by using an assertion to enforce uniqueness, rather than rejecting duplicates gracefully. This flaw allows a remote, unauthenticated attacker to crash the iApp process by sending two E2_SETUP_REQUESTs with identical E2 node configurations, causing the application to abort.

Impact

Exploitation of this vulnerability leads to a crash of the iApp process, causing a denial-of-service condition.

Reproduction

To reproduce this vulnerability, send two E2_SETUP_REQUEST messages with the same GlobalE2node_ID to the near-RT RIC over SCTP on port 36421. The second request will trigger the assertion in the E2 node registry, causing the process to abort.

Remediation

No upstream fix was available at the time of publication. Operators are advised to restrict E2 SCTP access to trusted nodes. The registry should be modified to handle E2 setup requests idempotently or return a duplicate-registration error instead of asserting.

Added: Jun 1, 2026, 5:49 PM
Updated: Jun 1, 2026, 5:49 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
8.0
remediation
0.0
relevance
9.7
threat
6.4
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.