CVE-2023-47346: Buffer Overflow
Published Nov 13, 2023
·Updated
Buffer Overflow vulnerability in free5gc 3.3.0, UPF 1.2.0, and SMF 1.2.0 allows attackers to cause a denial of service via crafted PFCP messages.
Affected Software
3 affected components
free5gc Free5gc=3.3.0
free5gc SMF=1.2.0
free5gc UPF=1.2.0
Event History
Nov 13, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2023-47346?
CVE-2023-47346 is a Buffer Overflow vulnerability in free5gc 3.3.0, UPF 1.2.0, and SMF 1.2.0 that allows attackers to cause a denial of service via crafted PFCP messages.
2
How severe is CVE-2023-47346?
CVE-2023-47346 has a severity rating of high, with a severity value of 7.5.
3
What software versions are affected by CVE-2023-47346?
CVE-2023-47346 affects free5gc version 3.3.0, UPF version 1.2.0, and SMF version 1.2.0.
4
How can CVE-2023-47346 be exploited?
CVE-2023-47346 can be exploited by sending crafted PFCP messages to the affected software.
5
Is there a fix for CVE-2023-47346?
At the moment, there is no known fix for CVE-2023-47346. It is advised to implement mitigation measures and stay updated with the latest security patches.