An issue was discovered in Open5gs v2.7.2. InitialUEMessage, Registration request sent at a specific time can crash AMF due to incorrect error handling of gmm_state_exception() function upon receipt of the Nausf_UEAuthentication_Authenticate response.
Metrics
Affected Vendors & Products
References
History
Tue, 22 Apr 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Open5gs
Open5gs open5gs |
|
Weaknesses | NVD-CWE-noinfo | |
CPEs | cpe:2.3:a:open5gs:open5gs:2.7.2:*:*:*:*:*:*:* | |
Vendors & Products |
Open5gs
Open5gs open5gs |
Sat, 22 Mar 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-617 |
Sat, 22 Mar 2025 14:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-400 |
Tue, 04 Feb 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-617 | |
Metrics |
cvssV3_1
|
Mon, 03 Feb 2025 19:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An issue was discovered in Open5gs v2.7.2. InitialUEMessage, Registration request sent at a specific time can crash AMF due to incorrect error handling of gmm_state_exception() function upon receipt of the Nausf_UEAuthentication_Authenticate response. | |
References |
|

Status: PUBLISHED
Assigner: mitre
Published: 2025-02-03T00:00:00.000Z
Updated: 2025-03-22T13:30:33.208Z
Reserved: 2025-01-09T00:00:00.000Z
Link: CVE-2024-56921

Updated: 2025-02-04T15:53:56.902Z

Status : Analyzed
Published: 2025-02-03T20:15:33.610
Modified: 2025-04-22T14:58:46.420
Link: CVE-2024-56921

No data.