A vulnerability classified as critical has been found in Open5GS up to 2.7.1. This issue affects the function
pcrf_rx_aar_cb of the file src/pcrf/pcrf-rx-path.c of the component Diameter Rx Handler. The manipulation of the argument num_of_media_component/num_of_sub leads to buffer overflow.
This vulnerability is documented as CVE-2024-14044. The attack can be initiated remotely. Additionally, an exploit exists.
It is recommended to upgrade the affected component.