CVE-2024-51179

HIGH

Open5gs - Improper Resource Release

Title source: rule
STIX 2.1

Description

An issue in Open 5GS v.2.7.1 allows a remote attacker to cause a denial of service via the Network Function Virtualizations (NFVs) such as the User Plane Function (UPF) and the Session Management Function (SMF), The Packet Data Unit (PDU) session establishment process.

Exploits (1)

nomisec WORKING POC 4 stars
by Lakshmirnr · poc
https://github.com/Lakshmirnr/CVE-2024-51179

Scores

CVSS v3 7.5
EPSS 0.1354
EPSS Percentile 94.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-404
Status published
Products (1)
open5gs/open5gs 2.7.1
Published Nov 12, 2024
Tracked Since Feb 18, 2026