CyberRota Analysis
AI-GeneratedOpen5GS versions up to 2.7.7 are vulnerable to a pre-authentication heap out-of-bounds read in the AMF NAS 5GS mobile-identity handler, which can lead to a subscriber-wide denial of service. Organizations using this software should prioritize patching to mitigate the risk of service disruption. This vulnerability poses a significant threat to network availability and should be addressed promptly by service providers relying on Open5GS.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
In Open5GS through version 2.7.7 a pre-authentication heap out-of-bounds read in the AMF NAS 5GS mobile-identity handler may result in subscriber-wide denial of service.