PT-2026-55684 · Open5Gs · Open5Gs
CVSS v3.1
4.3
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L |
Name of the Vulnerable Software and Affected Versions
Open5GS versions prior to 2.7.8
Description
A remote denial of service issue exists within the AMF component. The flaw is located in the
amf nnrf handle nf discover() function within the src/amf/nnrf-handler.c file. Manipulation of this function allows a remote attacker to cause the system to become unavailable.Recommendations
Apply patch fb5f67703de0213fb9c6e6ef3b48b6c1707e9503 to resolve the issue.
As a temporary mitigation, restrict access to the
amf nnrf handle nf discover() function.Exploit
Fix
DoS
Improper Resource Release
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Open5Gs