CVE-2025-52322
- EPSS 0.54%
- Veröffentlicht 09.09.2025 00:00:00
- Zuletzt bearbeitet 17.10.2025 20:19:05
An issue in Open5GS v2.7.2 and before allows a remote attacker to cause a denial of service via a crafted Create Session Request message to the SMF (PGW-C), using the IP address of a legitimate UE in the PDN Address Allocation (PAA) field
CVE-2025-52288
- EPSS 0.48%
- Veröffentlicht 08.09.2025 00:00:00
- Zuletzt bearbeitet 09.10.2025 18:19:21
Assertion failure in function ngap_build_downlink_nas_transport in file src/amf/ngap-build.c, the Access and Mobility Management Function (AMF) component, in Open5GS thru 2.7.5 allowing attackers to cause a denial of service or other unspecified impa...
CVE-2025-9405
- EPSS 0.63%
- Veröffentlicht 25.08.2025 03:02:08
- Zuletzt bearbeitet 02.09.2025 18:17:59
A security flaw has been discovered in Open5GS up to 2.7.5. The impacted element is the function gmm_state_exception of the file src/amf/gmm-sm.c. The manipulation results in reachable assertion. It is possible to launch the attack remotely. The expl...
CVE-2025-8805
- EPSS 0.73%
- Veröffentlicht 10.08.2025 10:32:08
- Zuletzt bearbeitet 15.08.2025 14:15:30
A vulnerability was determined in Open5GS up to 2.7.5. Affected by this issue is the function smf_gsm_state_wait_pfcp_deletion of the file src/smf/gsm-sm.c of the component SMF. The manipulation leads to denial of service. The attack may be launched ...
CVE-2025-8804
- EPSS 0.79%
- Veröffentlicht 10.08.2025 10:02:08
- Zuletzt bearbeitet 15.08.2025 14:15:30
A vulnerability was found in Open5GS up to 2.7.5. Affected by this vulnerability is the function ngap_build_downlink_nas_transport of the component AMF. The manipulation leads to reachable assertion. The attack can be launched remotely. The exploit h...
CVE-2025-8803
- EPSS 0.59%
- Veröffentlicht 10.08.2025 09:32:07
- Zuletzt bearbeitet 15.08.2025 17:15:34
A vulnerability has been found in Open5GS up to 2.7.5. Affected is the function gmm_state_de_registered/gmm_state_exception of the file src/amf/gmm-sm.c of the component AMF. The manipulation leads to denial of service. It is possible to launch the a...
CVE-2025-8802
- EPSS 0.63%
- Veröffentlicht 10.08.2025 09:02:07
- Zuletzt bearbeitet 15.08.2025 14:15:30
A vulnerability was determined in Open5GS up to 2.7.5. This vulnerability affects the function smf_state_operational of the file src/smf/smf-sm.c of the component SMF. The manipulation of the argument stream leads to denial of service. The attack can...
CVE-2025-8801
- EPSS 0.73%
- Veröffentlicht 10.08.2025 08:32:08
- Zuletzt bearbeitet 15.08.2025 14:15:30
A vulnerability was found in Open5GS up to 2.7.5. This affects the function gmm_state_exception of the file src/amf/gmm-sm.c of the component AMF. The manipulation leads to denial of service. It is possible to initiate the attack remotely. The exploi...
CVE-2025-8800
- EPSS 0.59%
- Veröffentlicht 10.08.2025 08:02:07
- Zuletzt bearbeitet 15.08.2025 09:15:31
A vulnerability has been found in Open5GS up to 2.7.5. Affected by this issue is the function esm_handle_pdn_connectivity_request of the file src/mme/esm-handler.c of the component AMF Component. The manipulation leads to denial of service. The attac...
CVE-2025-8799
- EPSS 0.73%
- Veröffentlicht 10.08.2025 07:32:07
- Zuletzt bearbeitet 15.08.2025 14:15:29
A vulnerability was identified in Open5GS up to 2.7.5. Affected by this vulnerability is the function amf_npcf_am_policy_control_build_create/amf_nsmf_pdusession_build_create_sm_context of the file src/amf/npcf-build.c of the component AMF. The manip...