Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
open5gs open5gs vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2023-23846
Due to insufficient length validation in the Open5GS GTP library versions prior to versions 2.4.13 and 2.5.7, when parsing extension headers in GPRS tunneling protocol (GPTv1-U) messages, a protocol payload with any extension header length set to zero causes an infinite loop. The...
Open5gs Open5gs
Open5gs Open5gs 2.5.6
445
VMScore
CVE-2021-44108
A null pointer dereference in src/amf/namf-handler.c in Open5GS 2.3.6 and previous versions allows remote malicious users to Denial of Service via a crafted sbi request to amf.
Open5gs Open5gs
445
VMScore
CVE-2021-44109
A buffer overflow in lib/sbi/message.c in Open5GS 2.3.6 and previous versions allows remote malicious users to Denial of Service via a crafted sbi request.
Open5gs Open5gs
NA
CVE-2022-40890
A vulnerability in /src/amf/amf-context.c in Open5GS 2.4.10 and previous versions leads to AMF denial of service.
Open5gs Open5gs
1 Github repository
NA
CVE-2022-3299
A vulnerability was found in Open5GS up to 2.4.10. It has been declared as problematic. Affected by this vulnerability is an unknown functionality in the library lib/sbi/client.c of the component AMF. The manipulation leads to denial of service. The attack can be launched remotel...
Open5gs Open5gs
NA
CVE-2022-3354
A vulnerability has been found in Open5GS up to 2.4.10 and classified as problematic. This vulnerability affects unknown code in the library lib/core/ogs-tlv-msg.c of the component UDP Packet Handler. The manipulation leads to denial of service. The exploit has been disclosed to ...
Open5gs Open5gs
NA
CVE-2023-4882
DOS vulnerability that could allow an malicious user to register a new VNF (Virtual Network Function) value. This action could trigger the args_assets() function defined in the arg-log.php file, which would then execute the args-abort.c file, causing the service to crash.
Open5gs Open5gs
NA
CVE-2023-4883
Invalid pointer release vulnerability. Exploitation of this vulnerability could allow an malicious user to interrupt the correct operation of the service by sending a specially crafted json string to the VNF (Virtual Network Function), and triggering the ogs_sbi_message_free fun...
Open5gs Open5gs
NA
CVE-2023-4884
An attacker could send an HTTP request to an Open5GS endpoint and retrieve the information stored on the device due to the lack of Authentication.
Open5gs Open5gs
NA
CVE-2023-4885
Man in the Middle vulnerability, which could allow an malicious user to intercept VNF (Virtual Network Function) communications resulting in the exposure of sensitive information.
Open5gs Open5gs
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
camera
bypass
CVE-2024-3592
CVE-2024-37383
CVE-2024-24919
CVE-2024-27822
CVE-2024-36788
CVE-2024-36789
man-in-the-middle
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »