Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Open5GS MME versions <= 2.6.4 contain a reachable assertion in the `Uplink NAS Transport` packet handler. A packet missing its `MME_UE_S1AP_ID` field causes Open5gs to crash; an attacker may repeatedly send such packets to cause denial of service.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Open5GS 安全漏洞
Vulnerability Description
Open5GS是Open5GS开源的一个 5G Core 和 Epc 的 C 语言开源实现,即 Lte/Nr 网络的核心网络。 Open5GS 2.6.4版本及之前版本存在安全漏洞,该漏洞源于在Uplink NAS Transport数据包处理程序中包含可达断言。缺少MME_UE_S1AP_ID字段的数据包会导致Open5gs崩溃。
CVSS Information
N/A
Vulnerability Type
N/A