Impact
The vulnerability in Open5GS’s NRF component stems from the ogs_nnrf_nfm_handle_nf_profile function in lib/sbi/nnrf-handler.c. Manipulation of this function leads to a denial of service, allowing an attacker to interrupt NRF operation. The weakness is a missing resource reset issue, identified as CWE‑404, and an exploit is publicly available.
Affected Systems
Open5GS, versions up to 2.7.7. Deployments using the NRF service, particularly those exposing nf_profile interfaces, are susceptible until the functionality is patched or removed.
Risk and Exploitability
The CVSS score of 5.3 indicates moderate severity, and the lack of an EPSS score suggests the exploitation probability is unknown. The vulnerability is not listed in the CISA KEV catalog, but because the attack vector is remote and an exploit is available, the risk remains non‑trivial for exposed systems.
OpenCVE Enrichment