Open5GS AMF ngap_build_downlink_nas_transport assertion
Published Aug 10, 2025
6.9
MEDIUMCVSS 4.0
EPSS 0.79%
Description
A vulnerability was found in Open5GS up to 2.7.5. Affected by this vulnerability is the function ngap_build_downlink_nas_transport of the component AMF. The manipulation leads to reachable assertion. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 2.7.6 is able to address this issue. The identifier of the patch is bca0a7b6e01d254f4223b83831162566d4626428. It is recommended to upgrade the affected component.
Affected products
- Vendor n/a Product Open5GS Defaultunknown
Affected
- 2.7.0
- 2.7.1
- 2.7.2
- 2.7.3
- 2.7.4
- 2.7.5
Unaffected
- 2.7.6
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
| Vendor | Product | Default status | Versions |
|---|---|---|---|
| n/a | Open5GS | unknown | Affected
Unaffected
|
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (11)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-24084 Advisory
- https://github.com/ZHENGHAOHELLO/BugReport/blob/main/CVE-2025-8804 related
- https://github.com/open5gs/open5gs/commit/bca0a7b6e01d254f4223b83831162566d4626428 patch
- https://github.com/open5gs/open5gs/issues/3950 exploitissue-trackingIssue Tracking
- https://github.com/open5gs/open5gs/issues/3950#issuecomment-3034693457 issue-trackingIssue Tracking
- https://github.com/open5gs/open5gs/releases/tag/v2.7.6 patchRelease Notes
- https://github.com/user-attachments/files/21030801/newdata_for_ngap.zip exploit
- https://vuldb.com/?ctiid.319333 signaturepermissions-requiredPermissions RequiredVDB Entry
- https://vuldb.com/?id.319333 vdb-entrytechnical-descriptionThird Party AdvisoryVDB Entry
- https://vuldb.com/?submit.625698 third-party-advisory
- https://vuldb.com/?submit.626124 third-party-advisoryThird Party AdvisoryVDB Entry
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-24084 | Advisory | |
| https://github.com/ZHENGHAOHELLO/BugReport/blob/main/CVE-2025-8804 | related | |
| https://github.com/open5gs/open5gs/commit/bca0a7b6e01d254f4223b83831162566d4626428 | patch | |
| https://github.com/open5gs/open5gs/issues/3950 | exploitissue-trackingIssue Tracking | |
| https://github.com/open5gs/open5gs/issues/3950#issuecomment-3034693457 | issue-trackingIssue Tracking | |
| https://github.com/open5gs/open5gs/releases/tag/v2.7.6 | patchRelease Notes | |
| https://github.com/user-attachments/files/21030801/newdata_for_ngap.zip | exploit | |
| https://vuldb.com/?ctiid.319333 | signaturepermissions-requiredPermissions RequiredVDB Entry | |
| https://vuldb.com/?id.319333 | vdb-entrytechnical-descriptionThird Party AdvisoryVDB Entry | |
| https://vuldb.com/?submit.625698 | third-party-advisory | |
| https://vuldb.com/?submit.626124 | third-party-advisoryThird Party AdvisoryVDB Entry |
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
Red Hat
No data
GitHub
No data