Back

MEDIUM

Open5GS AMF npcf-build.c amf_nsmf_pdusession_build_create_sm_context denial of service

Published Aug 10, 2025

Description

A vulnerability was identified in Open5GS up to 2.7.5. Affected by this vulnerability is the function amf_npcf_am_policy_control_build_create/amf_nsmf_pdusession_build_create_sm_context of the file src/amf/npcf-build.c of the component AMF. The manipulation leads to denial of service. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 2.7.6 is able to address this issue. The patch is named cf63dd63197bf61a4b041aa364ba6a6199ab15e4. It is recommended to upgrade the affected component.

Affected products

Remediation

No remediation recorded yet.

References (10)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner VulDB
Published Aug 10, 2025
Updated Aug 15, 2025
Reserved Aug 9, 2025
CISA Vulnrichment
Updated Aug 11, 2025
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner VulDB
Published Aug 10, 2025
Updated Aug 15, 2025
Exploited since n/a
EUVD-2025-24081