CVE-2023-37014 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Open5GS MME versions
High CVSS: 7.5

CVE-2023-37014

Open5GS MME versions <= 2.6.4 contains an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface. An attacker may send a `UE Context Release Request` message missing a required `MME_UE_S1AP_ID` field to repeatedly crash the MME, resulting in denial of service.
Vendor
Open5gs
Product
Open5gs
CWE
NVD-CWE-noinfo
Yayın Tarihi
2025-01-22 15:15:10
Güncelleme
2025-04-22 17:15:26
Source Identifier
cve@mitre.org
KEV Date Added
-

Kategoriler

Referanslar