An issue in Open5GS v.2.7.2 allows a remote attacker to cause a denial of service via the ogsdbiauth_info function in lib/dbi/subscription.c file.
[
{
"signature_version": "v1",
"signature_type": "Line",
"id": "CVE-2024-57519-4e6557a6",
"digest": {
"line_hashes": [
"202852903634510213887790720133597011554",
"31365865254802024363282019262419507447",
"337066588249904175181713548799649113405",
"228955882739903505850547135398929859293",
"329417872449323744060534169332640995471",
"42842798544784547767747608730607347769"
],
"threshold": 0.9
},
"source": "https://github.com/open5gs/open5gs/commit/08b9e7c55f72649ef25b5407e7e4d938f0f16531",
"target": {
"file": "lib/dbi/subscription.c"
},
"deprecated": false
},
{
"signature_version": "v1",
"signature_type": "Function",
"id": "CVE-2024-57519-dcca22fc",
"digest": {
"length": 2583.0,
"function_hash": "129288358796899480056009989830779798333"
},
"source": "https://github.com/open5gs/open5gs/commit/08b9e7c55f72649ef25b5407e7e4d938f0f16531",
"target": {
"file": "lib/dbi/subscription.c",
"function": "ogs_dbi_auth_info"
},
"deprecated": false
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-57519.json"