Open5GS
cpe:2.3:a:open5gs:open5gs:*:*:*:*:*:*:*
- < 2.7.5
A reachable assertion vulnerability has been identified in Open5GS versions prior to 2.7.5. This vulnerability allows attackers with connectivity to the Network Repository Function (NRF) to cause a denial-of-service condition. The issue arises when an SBI request is made to delete the NRF's own registry, triggering a process check that crashes the NRF process and disrupts the discovery service.
Exploitation of this vulnerability leads to a crash of the NRF process, causing the discovery service to become unresponsive and unavailable.
Users can upgrade to Open5GS version 2.7.5 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.