A null pointer dereference in src/amf/namf-handler.c in Open5GS 2.3.6 and earlier allows remote attackers to Denial of Service via a crafted sbi request to amf.
References
Link | Resource |
---|---|
https://github.com/open5gs/open5gs/commit/d919b2744cd05abae043490f0a3dd1946c1ccb8c | Patch Third Party Advisory |
https://github.com/open5gs/open5gs/issues/1247 | Exploit Issue Tracking Third Party Advisory |
https://github.com/open5gs/open5gs/commit/d919b2744cd05abae043490f0a3dd1946c1ccb8c | Patch Third Party Advisory |
https://github.com/open5gs/open5gs/issues/1247 | Exploit Issue Tracking Third Party Advisory |
Configurations
History
21 Nov 2024, 06:30
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/open5gs/open5gs/commit/d919b2744cd05abae043490f0a3dd1946c1ccb8c - Patch, Third Party Advisory | |
References | () https://github.com/open5gs/open5gs/issues/1247 - Exploit, Issue Tracking, Third Party Advisory |
13 Apr 2022, 15:18
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://github.com/open5gs/open5gs/issues/1247 - Exploit, Issue Tracking, Third Party Advisory | |
References | (MISC) https://github.com/open5gs/open5gs/commit/d919b2744cd05abae043490f0a3dd1946c1ccb8c - Patch, Third Party Advisory | |
CPE | cpe:2.3:a:open5gs:open5gs:*:*:*:*:*:*:*:* | |
CVSS |
v2 : v3 : |
v2 : 5.0
v3 : 7.5 |
CWE | CWE-476 |
05 Apr 2022, 02:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-04-05 02:15
Updated : 2024-11-21 06:30
NVD link : CVE-2021-44108
Mitre link : CVE-2021-44108
CVE.ORG link : CVE-2021-44108
JSON object : View
Products Affected
open5gs
- open5gs
CWE
CWE-476
NULL Pointer Dereference