CVE-2023-4882

Severity CVSS v4.0:
Pending analysis
Type:
CWE-404 Improper Resource Shutdown or Release
Publication date:
03/10/2023
Last modified:
05/10/2023

Description

DOS vulnerability that could allow an attacker to register a new VNF (Virtual Network Function) value. This action could trigger the args_assets() function defined in the arg-log.php file, which would then execute the args-abort.c file, causing the service to crash.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:open5gs:open5gs:*:*:*:*:*:*:*:* 2.4.10 (including)