Open5gs

Open5gs

191 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.9%
  • Veröffentlicht 29.09.2022 13:15:11
  • Zuletzt bearbeitet 21.05.2025 14:15:25

A vulnerability in /src/amf/amf-context.c in Open5GS 2.4.10 and earlier leads to AMF denial of service.

Exploit
  • EPSS 0.8%
  • Veröffentlicht 28.09.2022 16:15:12
  • Zuletzt bearbeitet 21.11.2024 07:19:21

A vulnerability has been found in Open5GS up to 2.4.10 and classified as problematic. This vulnerability affects unknown code in the library lib/core/ogs-tlv-msg.c of the component UDP Packet Handler. The manipulation leads to denial of service. The ...

Exploit
  • EPSS 1.01%
  • Veröffentlicht 26.09.2022 13:15:11
  • Zuletzt bearbeitet 21.11.2024 07:19:14

A vulnerability was found in Open5GS up to 2.4.10. It has been declared as problematic. Affected by this vulnerability is an unknown functionality in the library lib/sbi/client.c of the component AMF. The manipulation leads to denial of service. The ...

Exploit
  • EPSS 1.12%
  • Veröffentlicht 16.09.2022 19:15:10
  • Zuletzt bearbeitet 21.11.2024 07:17:28

When Open5GS UPF receives a PFCP Session Establishment Request, it stores related values for building the PFCP Session Establishment Response. Once UPF receives a request, it gets the f_teid_len from incoming message, and then uses it to copy data fr...

Exploit
  • EPSS 1.47%
  • Veröffentlicht 05.04.2022 02:15:06
  • Zuletzt bearbeitet 21.11.2024 06:30:22

A null pointer dereference in src/amf/namf-handler.c in Open5GS 2.3.6 and earlier allows remote attackers to Denial of Service via a crafted sbi request to amf.

Exploit
  • EPSS 1.6%
  • Veröffentlicht 05.04.2022 02:15:06
  • Zuletzt bearbeitet 21.11.2024 06:30:22

A buffer overflow in lib/sbi/message.c in Open5GS 2.3.6 and earlier allows remote attackers to Denial of Service via a crafted sbi request.

Exploit
  • EPSS 1.05%
  • Veröffentlicht 29.03.2022 16:15:07
  • Zuletzt bearbeitet 21.11.2024 06:30:20

A buffer overflow vulnerability exists in the AMF of open5gs 2.1.4. When the length of MSIN in Supi exceeds 24 characters, it leads to AMF denial of service.

  • EPSS 4.41%
  • Veröffentlicht 23.12.2021 04:15:09
  • Zuletzt bearbeitet 21.11.2024 06:32:15

In Open5GS 2.4.0, a crafted packet from UE can crash SGW-U/UPF.

Exploit
  • EPSS 1.22%
  • Veröffentlicht 07.10.2021 15:15:11
  • Zuletzt bearbeitet 21.11.2024 06:26:46

ogs_fqdn_parse in Open5GS 1.0.0 through 2.3.3 inappropriately trusts a client-supplied length value, leading to a buffer overflow. The attacker can send a PFCP Session Establishment Request with "internet" as the PDI Network Instance. The first chara...

Exploit
  • EPSS 3.96%
  • Veröffentlicht 10.03.2021 15:15:12
  • Zuletzt bearbeitet 21.11.2024 05:59:07

A request-validation issue was discovered in Open5GS 2.1.3 through 2.2.x before 2.2.1. The WebUI component allows an unauthenticated user to use a crafted HTTP API request to create, read, update, or delete entries in the subscriber database. For exa...