A vulnerability has been found in Open5GS up to 2.7.7. This issue affects the function OpenAPI_list_create of the component SMF. Such manipulation leads to denial of service. The attack may be launch…
Medium CVSS 4.3
Summary
A vulnerability has been found in Open5GS up to 2.7.7. This issue affects the function OpenAPI_list_create of the component SMF. Such manipulation leads to denial of service. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The project was informed of the problem early through an issue report but has not responded yet.
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://github.com/open5gs/open5gs/ Product
- https://github.com/open5gs/open5gs/issues/4449 Exploit
- https://vuldb.com/submit/808485 Third Party Advisory
- https://vuldb.com/vuln/362565 Third Party Advisory
- https://vuldb.com/vuln/362565/cti Permissions Required
Timeline
- nvd_ingest NVD