CVE-2021-44108: Null Pointer Dereference
Published Apr 5, 2022
·Updated
A null pointer dereference in src/amf/namf-handler.c in Open5GS 2.3.6 and earlier allows remote attackers to Denial of Service via a crafted sbi request to amf.
Affected Software
1 affected component
open5gs open5gs<=2.3.6
Remediation
Event History
Apr 5, 2022
CVE Published
via MITRE·01:22 AM
Data Sourced
via MITRE·01:22 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID of this vulnerability is CVE-2021-44108.
2
What is the severity of CVE-2021-44108?
The severity of CVE-2021-44108 is high with a CVSS score of 7.5.
3
What is the affected software version?
The affected software version is Open5GS 2.3.6 and earlier.
4
How does the vulnerability in src/amf/namf-handler.c in Open5GS 2.3.6 and earlier impact the system?
The vulnerability allows remote attackers to trigger a Denial of Service (DoS) by sending a crafted sbi request to amf.
5
Is there a fix available for this vulnerability?
Yes, a fix is available in the Open5GS project. Please refer to the provided GitHub commit link for more information.