Back

HIGH

Multiple vulnerabilities in Open5GS

Published Oct 3, 2023

Description

Invalid pointer release vulnerability. Exploitation of this vulnerability could allow an attacker to interrupt the correct operation of the service by sending a specially crafted json string to the VNF (Virtual Network Function), and triggering the ogs_sbi_message_free function, which could cause a service outage.

Affected products

Remediation

Vendor solution

Open5GS is working on a fix for the reported vulnerabilities.

Weaknesses (1)

References (2)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner INCIBE
Published Oct 3, 2023
Updated Sep 19, 2024
Reserved Sep 11, 2023

CISA Vulnrichment

Updated Sep 19, 2024

NVD

Status Modified
Modified Jun 17, 2026

Red Hat

No data

ENISA EUVD

Assigner INCIBE
Published Oct 3, 2023
Updated Sep 19, 2024

GitHub

No data