Impact
Open5GS v2.7.7 contains a buffer overflow in the ogs_sbi_time_parse() function, which is invoked when handling robustly formatted time stamps in the Open5GS SBI protocol. A crafted input string can cause the parsing routine to write beyond the bounds of its buffer and trigger a segmentation fault, terminating the SBI service and causing a disruption of control plane traffic. This vulnerability is a classic memory corruption flaw that leads to a denial of service and can be triggered remotely with no authentication. The CVE entry cites GitHub and issue trackers that demonstrate successful exploitation causing a crash in a live environment.
Affected Systems
Open5GS v2.7.7 is the affected version. No other releases have confirmed exploitation.
Risk and Exploitability
The EPSS score is <1% and the vulnerability is not listed in the CISA KEV catalog. With a CVSS score of 7.5, this represents a high impact for service availability. A remote attacker can trigger the bug by sending a specially crafted request to an open SBI endpoint; no privileged access is required. The nature of the crash implies a significant risk to availability, and the high severity suggests a priority to remediate in a production environment that relies on Open5GS for core network functions.
OpenCVE Enrichment