CVE-2022-43221
- EPSS 0.32%
- Veröffentlicht 01.11.2022 14:15:15
- Zuletzt bearbeitet 02.05.2025 22:15:16
open5gs v2.4.11 was discovered to contain a memory leak in the component src/upf/pfcp-path.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted PFCP packet.
CVE-2022-43222
- EPSS 0.32%
- Veröffentlicht 01.11.2022 14:15:15
- Zuletzt bearbeitet 02.05.2025 22:15:16
open5gs v2.4.11 was discovered to contain a memory leak in the component src/smf/pfcp-path.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted PFCP packet.
CVE-2022-43223
- EPSS 0.32%
- Veröffentlicht 01.11.2022 14:15:15
- Zuletzt bearbeitet 02.05.2025 21:15:19
open5gs v2.4.11 was discovered to contain a memory leak in the component ngap-handler.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted UE attachment.
CVE-2022-40890
- EPSS 0.41%
- Veröffentlicht 29.09.2022 13:15:11
- Zuletzt bearbeitet 21.05.2025 14:15:25
A vulnerability in /src/amf/amf-context.c in Open5GS 2.4.10 and earlier leads to AMF denial of service.
CVE-2022-3354
- EPSS 0.37%
- Veröffentlicht 28.09.2022 16:15:12
- Zuletzt bearbeitet 21.11.2024 07:19:21
A vulnerability has been found in Open5GS up to 2.4.10 and classified as problematic. This vulnerability affects unknown code in the library lib/core/ogs-tlv-msg.c of the component UDP Packet Handler. The manipulation leads to denial of service. The ...
CVE-2022-3299
- EPSS 0.34%
- Veröffentlicht 26.09.2022 13:15:11
- Zuletzt bearbeitet 21.11.2024 07:19:14
A vulnerability was found in Open5GS up to 2.4.10. It has been declared as problematic. Affected by this vulnerability is an unknown functionality in the library lib/sbi/client.c of the component AMF. The manipulation leads to denial of service. The ...
CVE-2022-39063
- EPSS 0.59%
- Veröffentlicht 16.09.2022 19:15:10
- Zuletzt bearbeitet 21.11.2024 07:17:28
When Open5GS UPF receives a PFCP Session Establishment Request, it stores related values for building the PFCP Session Establishment Response. Once UPF receives a request, it gets the f_teid_len from incoming message, and then uses it to copy data fr...
CVE-2021-44108
- EPSS 0.56%
- Veröffentlicht 05.04.2022 02:15:06
- Zuletzt bearbeitet 21.11.2024 06:30:22
A null pointer dereference in src/amf/namf-handler.c in Open5GS 2.3.6 and earlier allows remote attackers to Denial of Service via a crafted sbi request to amf.
CVE-2021-44109
- EPSS 0.95%
- Veröffentlicht 05.04.2022 02:15:06
- Zuletzt bearbeitet 21.11.2024 06:30:22
A buffer overflow in lib/sbi/message.c in Open5GS 2.3.6 and earlier allows remote attackers to Denial of Service via a crafted sbi request.
CVE-2021-44081
- EPSS 0.33%
- Veröffentlicht 29.03.2022 16:15:07
- Zuletzt bearbeitet 21.11.2024 06:30:20
A buffer overflow vulnerability exists in the AMF of open5gs 2.1.4. When the length of MSIN in Supi exceeds 24 characters, it leads to AMF denial of service.