7.5

CVE-2023-50020

Exploit
An issue was discovered in open5gs v2.6.6. SIGPIPE can be used to crash AMF.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Open5gsOpen5gs Version2.6.6
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.68% 0.473
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CISA-ADP 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE-400 Uncontrolled Resource Consumption

The product does not properly control the allocation and maintenance of a limited resource.

https://github.com/open5gs/open5gs/commit/1aba814938e3a1b2eec7014bf6ce132d34622e08
Patch
https://github.com/open5gs/open5gs/issues/2734
Vendor Advisory
Exploit
Issue Tracking