PT-2025-29342 · Open5Gs · Open5Gs
CVSS v4.0
4.8
Média
| Vetor | AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X |
Name of the Vulnerable Software and Affected Versions:
Open5GS versions up to 2.7.3
Description:
A problematic issue exists in Open5GS related to the SCTP Partial Message Handler component. The
ngap recv handler/s1ap recv handler/recv handler function is susceptible to a reachable assertion due to manipulation. This issue requires local access for exploitation.Recommendations:
Apply the patch cfa44575020f3fb045fd971358442053c8684d3d to resolve the issue.
Exploit
Correção
Assertion Failure
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Open5Gs