CVE-2022-43222: High severity open5gs open5gs vulnerability
Published Nov 1, 2022
·Updated
open5gs v2.4.11 was discovered to contain a memory leak in the component src/smf/pfcp-path.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted PFCP packet.
Affected Software
1 affected component
open5gs open5gs=2.4.11
Event History
Nov 1, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID for this issue is CVE-2022-43222.
2
What is the severity of CVE-2022-43222?
The severity of CVE-2022-43222 is high with a CVSS score of 7.5.
3
What is the affected software?
The affected software is Open5gs v2.4.11.
4
What is the impact of this vulnerability?
This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted PFCP packet.
5
Is there a fix available for CVE-2022-43222?
Yes, it is recommended to update to a patched version of Open5gs to mitigate this vulnerability.