CVE-2023-50020: High severity open5gs open5gs vulnerability
Published Jan 2, 2024
·Updated
An issue was discovered in open5gs v2.6.6. SIGPIPE can be used to crash AMF.
Affected Software
1 affected component
open5gs open5gs=2.6.6
Remediation
Event History
Jan 2, 2024
CVE Published
12:00 AM
Data Sourced
12:00 AM
Description
Data Sourced
via NVD·10:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-50020?
CVE-2023-50020 is classified as a medium severity vulnerability due to its potential to crash the AMF component.
2
How do I fix CVE-2023-50020?
To fix CVE-2023-50020, update Open5GS to version 2.6.7 or later where the issue has been addressed.
3
What component is affected by CVE-2023-50020?
CVE-2023-50020 affects the AMF (Access and Mobility Management Function) component of Open5GS.
4
What does CVE-2023-50020 exploit?
CVE-2023-50020 exploits the SIGPIPE signal, which can lead to crashing the AMF.
5
What version of Open5GS is vulnerable to CVE-2023-50020?
Open5GS version 2.6.6 is the vulnerable version affected by CVE-2023-50020.