CVE-2023-23846: High severity open5gs vulnerability
Due to insufficient length validation in the Open5GS GTP library versions prior to versions 2.4.13 and 2.5.7, when parsing extension headers in GPRS tunneling protocol (GPTv1-U) messages, a protocol payload with any extension header length set to zero causes an infinite loop. The affected process becomes immediately unresponsive, resulting in denial of service and excessive resource consumption. CVSS3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:P/RL:O/RC:C
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-23846?
CVE-2023-23846 is a vulnerability in the Open5GS GTP library that allows for an infinite loop to occur when parsing extension headers in GPTv1-U messages.
What is the severity of CVE-2023-23846?
The severity of CVE-2023-23846 is high, with a CVSS score of 7.5.
Which versions of Open5GS are affected?
Open5GS versions prior to 2.4.13 and 2.5.7 are affected.
How can the CVE-2023-23846 vulnerability be exploited?
The vulnerability can be exploited by sending a protocol payload with any extension header length set to zero.
Is there a fix available for CVE-2023-23846?
Yes, upgrading to Open5GS versions 2.4.13 or 2.5.7 or later will fix the vulnerability.