A flaw has been found in Open5GS up to 2.7.7. This vulnerability affects the function smf_nsmf_handle_created_data_in_vsmf of the component SMF. This manipulation causes denial of service. The attack…
Medium CVSS 4.3
Summary
A flaw has been found in Open5GS up to 2.7.7. This vulnerability affects the function smf_nsmf_handle_created_data_in_vsmf of the component SMF. This manipulation causes denial of service. The attack may be initiated remotely. The exploit has been published and may be used. The project was informed of the problem early through an issue report but has not responded yet.
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://github.com/open5gs/open5gs/ Product
- https://github.com/open5gs/open5gs/issues/4448 Exploit
- https://vuldb.com/submit/808484 Third Party Advisory
- https://vuldb.com/vuln/362564 Third Party Advisory
- https://vuldb.com/vuln/362564/cti Permissions Required
- https://vuldb.com/submit/808484 Third Party Advisory
Timeline
- nvd_ingest NVD