CVE-2023-47346
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Nov 13, 2023
Updated: Nov 20, 2023
CWE ID 120
Summary
CVE-2023-47346 is a buffer overflow vulnerability affecting free5gc versions 3.3.0, UPF 1.2.0, and SMF 1.2.0. An attacker can exploit this issue by sending crafted PFCP messages, resulting in a denial of service. The buffer overflow occurs due to improper handling of these messages, potentially leading to memory corruption and service disruption. Organizations utilizing these specific versions of free5gc, UPF, and SMF are advised to apply the necessary patches as soon as possible to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- free5GC