7.5
CVSSv3

CVE-2022-40890

Published: 29/09/2022 Updated: 03/10/2022
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

A vulnerability in /src/amf/amf-context.c in Open5GS 2.4.10 and previous versions leads to AMF denial of service.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

open5gs open5gs

Github Repositories

Open5gs AMF DOS Vulnerability Recently, we discovered a logic vulnerability that may cause Open5gs AMF to crash during a code audit of Open5gs Ver249 The specific causes of the vulnerability are as follows: Vulnerability description When AMF is initialized, the default maximum number of GNB per AMF/MME is defined to 64 /lib/app/ogs-contextc #define MAX_NUM_OF_UE