CVE-2024-24447: Buffer Overflow
Published Nov 15, 2024
·Updated
A buffer overflow in the ngapamfhandlepdusessionresourcesetupresponse function of oai-cn5g-amf up to v2.0.0 allows attackers to cause a Denial of Service (DoS) via a PDU Session Resource Setup Response with an empty Response Item list.
Affected Software
1 affected component
oai cn5g-amf<2.0.0
Event History
Nov 15, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-24447?
CVE-2024-24447 has a high severity due to its potential to cause a Denial of Service (DoS).
2
How do I fix CVE-2024-24447?
To fix CVE-2024-24447, it is recommended to upgrade to a version later than v2.0.0 of oai-cn5g-amf.
3
What impact does CVE-2024-24447 have on systems?
CVE-2024-24447 can result in a Denial of Service, rendering the affected systems unresponsive.
4
Who is affected by CVE-2024-24447?
CVE-2024-24447 affects users running versions of oai-cn5g-amf up to and including v2.0.0.
5
What specific function is vulnerable in CVE-2024-24447?
The vulnerable function in CVE-2024-24447 is ngap_amf_handle_pdu_session_resource_setup_response.