CVE-2024-14042 | Open5GS up to 2.7.1 Diameter S6a Interface src/hss/hss-s6a-path.c hss_ogs_diam_s6a_air_cb/hss_ogs_diam_s6a_ulr_cb os.len stack-based overflow (Issue 3155)
A vulnerability marked as critical has been reported in Open5GS up to 2.7.1. This affects the function hss_ogs_diam_s6a_air_cb/hss_ogs_diam_s6a_ulr_cb of the file src/hss/hss-s6a-path.c of the component Diameter S6a Interface. Performing a manipulation of the argument os.len results in stack-based buffer overflow.
This vulnerability is cataloged as CVE-2024-14042. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More