Null Dereference in OpenAirInterface CN5G AMF Enables DoS Attack
OpenAirInterface CN5G AMF (oai-cn5g-amf) version 2.0.0 or below has a vulnerability due to null dereference. This happens when it handles unsupported NGAP protocol messages. An attacker near the network can use this to cause a denial of service. If an unsupported procedure code/presence field tuple is received, the system accesses a null function pointer and tries to dereference it.