VYPR

Open5gs

by Open5gs

Source repositories

CVEs (185)

  • CVE-2022-3299MedSep 26, 2022
    risk 0.00cvss 4.3epss 0.01

    A vulnerability was found in Open5GS up to 2.4.10. It has been declared as problematic. Affected by this vulnerability is an unknown functionality in the library lib/sbi/client.c of the component AMF. The manipulation leads to denial of service. The attack can be launched…

  • CVE-2021-44109HigApr 5, 2022
    risk 0.00cvss 7.5epss 0.02

    A buffer overflow in lib/sbi/message.c in Open5GS 2.3.6 and earlier allows remote attackers to Denial of Service via a crafted sbi request.

  • CVE-2021-44108HigApr 5, 2022
    risk 0.00cvss 7.5epss 0.01

    A null pointer dereference in src/amf/namf-handler.c in Open5GS 2.3.6 and earlier allows remote attackers to Denial of Service via a crafted sbi request to amf.

  • CVE-2021-45462HigDec 23, 2021
    risk 0.00cvss 7.5epss 0.04

    In Open5GS 2.4.0, a crafted packet from UE can crash SGW-U/UPF.

  • CVE-2021-28122CriMar 10, 2021
    risk 0.00cvss 9.8epss 0.04

    A request-validation issue was discovered in Open5GS 2.1.3 through 2.2.x before 2.2.1. The WebUI component allows an unauthenticated user to use a crafted HTTP API request to create, read, update, or delete entries in the subscriber database. For example, new administrative…

Page 10 of 10