CVE-2025-8801
- EPSS 0.39%
- Veröffentlicht 10.08.2025 08:32:08
- Zuletzt bearbeitet 15.08.2025 14:15:30
A vulnerability was found in Open5GS up to 2.7.5. This affects the function gmm_state_exception of the file src/amf/gmm-sm.c of the component AMF. The manipulation leads to denial of service. It is possible to initiate the attack remotely. The exploi...
CVE-2025-8800
- EPSS 0.17%
- Veröffentlicht 10.08.2025 08:02:07
- Zuletzt bearbeitet 15.08.2025 09:15:31
A vulnerability has been found in Open5GS up to 2.7.5. Affected by this issue is the function esm_handle_pdn_connectivity_request of the file src/mme/esm-handler.c of the component AMF Component. The manipulation leads to denial of service. The attac...
CVE-2025-8799
- EPSS 0.39%
- Veröffentlicht 10.08.2025 07:32:07
- Zuletzt bearbeitet 15.08.2025 14:15:29
A vulnerability was identified in Open5GS up to 2.7.5. Affected by this vulnerability is the function amf_npcf_am_policy_control_build_create/amf_nsmf_pdusession_build_create_sm_context of the file src/amf/npcf-build.c of the component AMF. The manip...
CVE-2025-8698
- EPSS 0.02%
- Veröffentlicht 07.08.2025 20:32:07
- Zuletzt bearbeitet 07.08.2025 21:26:37
A vulnerability was found in Open5GS up to 2.7.5. It has been classified as problematic. Affected is the function amf_nsmf_pdusession_handle_release_sm_context of the file src/amf/nsmf-handler.c of the component AMF Service. The manipulation leads to...
CVE-2025-7485
- EPSS 0.02%
- Veröffentlicht 12.07.2025 18:32:07
- Zuletzt bearbeitet 15.07.2025 13:14:24
A vulnerability classified as problematic was found in Open5GS up to 2.7.3. Affected by this vulnerability is the function ngap_recv_handler/s1ap_recv_handler/recv_handler of the component SCTP Partial Message Handler. The manipulation leads to reach...
CVE-2025-6952
- EPSS 0.02%
- Veröffentlicht 01.07.2025 11:32:07
- Zuletzt bearbeitet 03.07.2025 15:14:12
A vulnerability, which was classified as problematic, has been found in Open5GS up to 2.7.5. This issue affects the function amf_state_operational of the file src/amf/amf-sm.c of the component AMF Service. The manipulation leads to reachable assertio...
CVE-2025-44951
- EPSS 0.04%
- Veröffentlicht 18.06.2025 00:00:00
- Zuletzt bearbeitet 09.01.2026 19:16:06
A missing length check in `ogs_pfcp_dev_add` function from PFCP library, used by both smf and upf in open5gs 2.7.2 and earlier, allows a local attacker to cause a Buffer Overflow by changing the `session.dev` field with a value with length greater th...
CVE-2025-44952
- EPSS 0.04%
- Veröffentlicht 18.06.2025 00:00:00
- Zuletzt bearbeitet 09.07.2025 18:33:14
A missing length check in `ogs_pfcp_subnet_add` function from PFCP library, used by both smf and upf in open5gs 2.7.2 and earlier, allows a local attacker to cause a Buffer Overflow by changing the `session.dnn` field with a value with length greater...
CVE-2025-29646
- EPSS 0.09%
- Veröffentlicht 18.06.2025 00:00:00
- Zuletzt bearbeitet 09.07.2025 18:27:34
An issue in upf in open5gs 2.7.2 and earlier allows a remote attacker to cause a Denial of Service via a crafted PFCP SessionEstablishmentRequest packet with restoration indication = true and (teid = 0 or teid >= ogs_pfcp_pdr_teid_pool.size).
CVE-2025-5935
- EPSS 0.38%
- Veröffentlicht 10.06.2025 04:33:57
- Zuletzt bearbeitet 12.06.2025 16:06:39
A vulnerability was found in Open5GS up to 2.7.3. It has been declared as problematic. Affected by this vulnerability is the function common_register_state of the file src/mme/emm-sm.c of the component AMF/MME. The manipulation of the argument ran_ue...