Open5GS before 2.7.1 is vulnerable to a reachable assertion that can cause an AMF crash via NAS messages from a UE: ogs_nas_encrypt in lib/nas/common/security.c for pkbuf->len.
References
Configurations
No configuration.
History
01 Aug 2024, 13:52
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.3 |
CWE | CWE-805 |
05 May 2024, 00:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-05-05 00:15
Updated : 2024-08-01 13:52
NVD link : CVE-2024-34476
Mitre link : CVE-2024-34476
CVE.ORG link : CVE-2024-34476
JSON object : View
Products Affected
No product.
CWE
CWE-805
Buffer Access with Incorrect Length Value