Buffer Overflow Vulnerability in Open5GS Product by Open5GS Community
CVE-2024-40129

9.8CRITICAL

Key Information:

Vendor

Open5gs

Status
Vendor
CVE Published:
16 July 2024

What is CVE-2024-40129?

Open5GS version 2.6.4 is susceptible to a buffer overflow vulnerability located in /lib/pfcp/context.c. This vulnerability may allow an attacker to manipulate memory locations, potentially leading to arbitrary code execution or service disruption. It is critical for organizations that rely on this software to implement necessary updates and patches to mitigate potential threats, as failure to address this vulnerability could result in significant security risks.

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

.
CVE-2024-40129 : Buffer Overflow Vulnerability in Open5GS Product by Open5GS Community