An issue in Open5GS v.2.7.2 allows a remote attacker to cause a denial of service via the ogsdbiauth_info function in lib/dbi/subscription.c file.
[
{
"target": {
"file": "lib/dbi/subscription.c"
},
"signature_version": "v1",
"digest": {
"line_hashes": [
"202852903634510213887790720133597011554",
"31365865254802024363282019262419507447",
"337066588249904175181713548799649113405",
"228955882739903505850547135398929859293",
"329417872449323744060534169332640995471",
"42842798544784547767747608730607347769"
],
"threshold": 0.9
},
"source": "https://github.com/open5gs/open5gs/commit/08b9e7c55f72649ef25b5407e7e4d938f0f16531",
"deprecated": false,
"signature_type": "Line",
"id": "CVE-2024-57519-4e6557a6"
},
{
"target": {
"function": "ogs_dbi_auth_info",
"file": "lib/dbi/subscription.c"
},
"signature_version": "v1",
"digest": {
"length": 2583.0,
"function_hash": "129288358796899480056009989830779798333"
},
"source": "https://github.com/open5gs/open5gs/commit/08b9e7c55f72649ef25b5407e7e4d938f0f16531",
"deprecated": false,
"signature_type": "Function",
"id": "CVE-2024-57519-dcca22fc"
}
]