Free5gc

Free5gc

92 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.18%
  • Veröffentlicht 27.08.2026 00:00:00
  • Zuletzt bearbeitet 31.08.2026 20:59:32

A NULL pointer dereference in the CDR processing path of free5gc v4.0.1 allows attackers to cause a Denial of Service (DoS) via supplying crafted payload.

  • EPSS 0.18%
  • Veröffentlicht 27.08.2026 00:00:00
  • Zuletzt bearbeitet 01.09.2026 17:17:25

An issue in the NssaiAvailabilitySubscriptionCreate component of free5gc v4.0.1 allows attackers to cause a Denial of Service (DoS) via a crafted POST request.

  • EPSS 0.15%
  • Veröffentlicht 27.08.2026 00:00:00
  • Zuletzt bearbeitet 31.08.2026 20:59:32

Improper input validation in the buildFilter function (processor/processor.go) of free5gc v4.0.1 allows attackers to cause a Denial of Service (DoS) via a crafted input.

  • EPSS 0.43%
  • Veröffentlicht 31.07.2026 20:16:51
  • Zuletzt bearbeitet 08.09.2026 20:51:43

free5GC is an open-source implementation of the 5G core network. Prior to 1.4.5, the free5GC AUSF (Authentication Server Function) does not validate the supiOrSuci field in UE authentication requests. Null bytes (\x00) and other control characters pa...

Exploit
  • EPSS 0.27%
  • Veröffentlicht 27.05.2026 15:59:58
  • Zuletzt bearbeitet 29.05.2026 19:24:54

free5GC is an open-source implementation of the 5G core network. Prior to 4.2.2, the AMF in Free5GC does not verify the UE Security Capabilities received in NGAP PathSwitchRequest messages against its locally stored values, as mandated by 3GPP TS 33....

Exploit
  • EPSS 0.25%
  • Veröffentlicht 27.05.2026 15:59:21
  • Zuletzt bearbeitet 28.05.2026 19:22:15

free5GC is an open-source implementation of the 5G core network. Prior to 4.2.2, the AMF in Free5GC does not enforce the concurrent security procedure rules defined in 3GPP TS 33.501 §6.9.5.1. The AMF does not check for ongoing N2 handover procedures...

Exploit
  • EPSS 0.32%
  • Veröffentlicht 27.05.2026 15:56:11
  • Zuletzt bearbeitet 28.05.2026 18:40:59

free5GC is an open-source implementation of the 5G core network. Prior to 4.2.2, PCF Npcf_SMPolicyControl missing authentication middleware allows unauthenticated access to SM policy handlers and disclosure of subscriber SUPI. In NewServer(), the smP...

Exploit
  • EPSS 0.32%
  • Veröffentlicht 27.05.2026 15:53:45
  • Zuletzt bearbeitet 28.05.2026 18:35:51

free5GC is an open-source implementation of the 5G core network. Prior to 4.2.2, the free5GC UDM component fails to validate the supi path parameter in six GET handlers of the nudm-sdm (Subscriber Data Management) service. An unauthenticated attacker...

Exploit
  • EPSS 0.31%
  • Veröffentlicht 27.05.2026 15:52:51
  • Zuletzt bearbeitet 28.05.2026 18:34:15

free5GC is an open-source implementation of the 5G core network. Prior to 4.2.2, free5GC's NEF mounts the 3gpp-pfd-management API without inbound OAuth2/bearer-token authorization. A network attacker who can reach NEF on the SBI can create, read, and...

Exploit
  • EPSS 0.4%
  • Veröffentlicht 27.05.2026 15:52:07
  • Zuletzt bearbeitet 28.05.2026 18:31:42

free5GC is an open-source implementation of the 5G core network. Prior to 4.2.2, free5GC's PCF POST /npcf-smpolicycontrol/v1/sm-policies handler (HandleCreateSmPolicyRequest) panics with a nil-pointer dereference when a downstream OpenAPI consumer ca...