MEDIUM
Open5GS AMF Service amf-sm.c amf_state_operational assertion
Published Jul 1, 2025
4.8
MEDIUMCVSS 4.0
EPSS 0.23%
Description
A vulnerability, which was classified as problematic, has been found in Open5GS up to 2.7.5. This issue affects the function amf_state_operational of the file src/amf/amf-sm.c of the component AMF Service. The manipulation leads to reachable assertion. It is possible to launch the attack on the local host. The identifier of the patch is 53e9e059ed96b940f7ddcd9a2b68cb512524d5db. It is recommended to apply a patch to fix this issue.
Affected products
- Vendor n/a Product Open5GS Defaultn/a
- Version 2.7.0StatusaffectedConstraints-
- Version 2.7.1StatusaffectedConstraints-
- Version 2.7.2StatusaffectedConstraints-
- Version 2.7.3StatusaffectedConstraints-
- Version 2.7.4StatusaffectedConstraints-
- Version 2.7.5StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | |||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| n/a | Open5GS | n/a |
|
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (6)
- https://github.com/open5gs/open5gs/commit/53e9e059ed96b940f7ddcd9a2b68cb512524d5db patch
- https://github.com/open5gs/open5gs/issues/3938 issue-trackingExploitIssue TrackingThird Party Advisory
- https://github.com/open5gs/open5gs/issues/3938#issuecomment-3012139813 issue-trackingIssue Tracking
- https://vuldb.com/?ctiid.314489 signaturepermissions-requiredPermissions RequiredVDB Entry
- https://vuldb.com/?id.314489 vdb-entrytechnical-descriptionThird Party AdvisoryVDB Entry
- https://vuldb.com/?submit.605312 third-party-advisoryThird Party AdvisoryVDB Entry
| Link | Providers | Tags |
|---|---|---|
| https://github.com/open5gs/open5gs/commit/53e9e059ed96b940f7ddcd9a2b68cb512524d5db | patch | |
| https://github.com/open5gs/open5gs/issues/3938 | issue-trackingExploitIssue TrackingThird Party Advisory | |
| https://github.com/open5gs/open5gs/issues/3938#issuecomment-3012139813 | issue-trackingIssue Tracking | |
| https://vuldb.com/?ctiid.314489 | signaturepermissions-requiredPermissions RequiredVDB Entry | |
| https://vuldb.com/?id.314489 | vdb-entrytechnical-descriptionThird Party AdvisoryVDB Entry | |
| https://vuldb.com/?submit.605312 | third-party-advisoryThird Party AdvisoryVDB Entry |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner VulDB
Published Jul 1, 2025
Updated Jul 1, 2025
Reserved Jul 1, 2025
Link CVE-2025-6952
CISA Vulnrichment
Updated Jul 1, 2025