CVE-2024-51179

An issue in Open 5GS v.2.7.1 allows a remote attacker to cause a denial of service via the Network Function Virtualizations (NFVs) such as the User Plane Function (UPF) and the Session Management Function (SMF), The Packet Data Unit (PDU) session establishment process.
References
Link Resource
https://github.com/Lakshmirnr/CVE-2024-51179 Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:open5gs:open5gs:2.7.1:*:*:*:*:*:*:*

History

29 Sep 2025, 17:23

Type Values Removed Values Added
First Time Open5gs
Open5gs open5gs
CPE cpe:2.3:a:open5gs:open5gs:2.7.1:*:*:*:*:*:*:*
References () https://github.com/Lakshmirnr/CVE-2024-51179 - () https://github.com/Lakshmirnr/CVE-2024-51179 - Exploit, Third Party Advisory

13 Nov 2024, 20:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
CWE CWE-404

13 Nov 2024, 17:01

Type Values Removed Values Added
Summary
  • (es) Un problema en Open 5GS v.2.7.1 permite que un atacante remoto provoque una denegación de servicio a través de las virtualizaciones de funciones de red (NFV), como la función de plano de usuario (UPF) y la función de administración de sesión (SMF), el proceso de establecimiento de sesión de la unidad de datos de paquetes (PDU).

12 Nov 2024, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-12 22:15

Updated : 2025-09-29 17:23


NVD link : CVE-2024-51179

Mitre link : CVE-2024-51179

CVE.ORG link : CVE-2024-51179


JSON object : View

Products Affected

open5gs

  • open5gs
CWE
CWE-404

Improper Resource Shutdown or Release