Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
5.5
CVE-2026-82549: Magma 1.9.0 may accept false integrity check
CVE-2026-82549 · published 4 days ago
Summary
The Magma software version 1.9.0 has a mistake in a routine that confirms data integrity. An attacker on the network could trick the system into believing altered data is authentic. Update to a newer version or apply the vendor's patch to restore proper verification.
What to do
The CVE record does not list a fixed version. Check the vendor's site or the advisory links below - a fix may already be released.
Affected software
| Vendor | Product | Affected versions |
|---|---|---|
| linux foundation | magma | 1.9.0 |
Original advisory text
A vulnerability was identified in Linux Foundation Magma 1.9.0. This affects an unknown function of the component SecurityModeComplete Handler. Such manipulation leads to improper validation of int...
A vulnerability was identified in Linux Foundation Magma 1.9.0. This affects an unknown function of the component SecurityModeComplete Handler. Such manipulation leads to improper validation of integrity check value. The attack may be launched remotely. The exploit is publicly available and might be used.
References
- https://vuldb.com/vuln/397065 vdb-entry
- https://vuldb.com/vuln/397065/cti signature permissions-required
- https://vuldb.com/cve/CVE-2026-82549 third-party-advisory
- https://vuldb.com/submit/891574 third-party-advisory
- https://github.com/magma/magma/issues/16024 exploit issue-tracking
- https://www.linuxfoundation.org/ product
Severity
5.5
Medium
CVSS 3.1: 8.3 (MITRE)
Exploitation
EPSS <1%
Type
CWE-354Improper Validation of Integrity Check Value
CWE-345Insufficient Verification of Data Authenticity
Timeline
Published30 Aug 2026
Updated2 Sep 2026
First seen30 Aug 2026
Monitor software like this
Free during beta