Open5gs

Open5gs

191 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.27%
  • Veröffentlicht 22.01.2025 15:15:09
  • Zuletzt bearbeitet 22.04.2025 17:14:16

Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface. An attacker may send an `Initial Context Setup Response` message missing a required `MME_UE_S1AP_ID` field to repe...

  • EPSS 0.4%
  • Veröffentlicht 21.01.2025 23:15:12
  • Zuletzt bearbeitet 24.01.2025 18:47:28

A reachable assertion in the amf_ue_set_suci function of Open5GS <= 2.6.4 allows attackers to cause a Denial of Service (DoS) via a crafted NAS packet.

Exploit
  • EPSS 0.49%
  • Veröffentlicht 21.01.2025 23:15:12
  • Zuletzt bearbeitet 24.01.2025 18:44:26

A reachable assertion in the oai_nas_5gmm_decode function of Open5GS <= 2.6.4 allows attackers to cause a Denial of Service (DoS) via a crafted NGAP packet.

Exploit
  • EPSS 0.62%
  • Veröffentlicht 15.11.2024 19:15:06
  • Zuletzt bearbeitet 22.04.2025 17:26:58

A reachable assertion in the ogs_nas_emm_decode function of Open5GS v2.7.0 allows attackers to cause a Denial of Service (DoS) via a crafted NAS packet with a zero-length EMM message length.

Exploit
  • EPSS 1.07%
  • Veröffentlicht 12.11.2024 22:15:15
  • Zuletzt bearbeitet 29.09.2025 17:23:17

An issue in Open 5GS v.2.7.1 allows a remote attacker to cause a denial of service via the Network Function Virtualizations (NFVs) such as the User Plane Function (UPF) and the Session Management Function (SMF), The Packet Data Unit (PDU) session est...

Exploit
  • EPSS 0.46%
  • Veröffentlicht 16.07.2024 19:15:12
  • Zuletzt bearbeitet 21.11.2024 09:30:58

Open5GS v2.6.4 is vulnerable to Buffer Overflow. via /lib/pfcp/context.c.

Exploit
  • EPSS 0.64%
  • Veröffentlicht 16.07.2024 19:15:12
  • Zuletzt bearbeitet 21.11.2024 09:30:58

open5gs v2.6.4 is vulnerable to Buffer Overflow. via /lib/core/abts.c.

Exploit
  • EPSS 0.46%
  • Veröffentlicht 08.05.2024 17:15:07
  • Zuletzt bearbeitet 22.04.2025 17:47:24

An issue in Open5GS v.2.7.0 allows an attacker to cause a denial of service via the 64 unsuccessful UE/gnb registration

  • EPSS 0.61%
  • Veröffentlicht 05.05.2024 00:15:07
  • Zuletzt bearbeitet 22.04.2025 17:53:03

Open5GS before 2.7.1 is vulnerable to a reachable assertion that can cause an AMF crash via NAS messages from a UE: gmm_state_authentication in amf/gmm-sm.c for != OGS_ERROR.

  • EPSS 0.51%
  • Veröffentlicht 05.05.2024 00:15:07
  • Zuletzt bearbeitet 22.04.2025 17:52:57

Open5GS before 2.7.1 is vulnerable to a reachable assertion that can cause an AMF crash via NAS messages from a UE: ogs_nas_encrypt in lib/nas/common/security.c for pkbuf->len.