CNNVD-202506-2552 Information

CNNVD ID

CNNVD-202506-2552

CVE-2025-29646

  • CNNVD Published: 2025-06-18

Description (Chinese)

Open5GS是Open5GS开源的一个 5G Core 和 Epc 的 C 语言开源实现,即 Lte/Nr 网络的核心网络。 Open5GS 2.7.2及之前版本存在安全漏洞,该漏洞源于处理特制PFCP数据包不当,可能导致拒绝服务攻击。

Description (English)

Open5GS is a 5G Core and Epc open-language C open source of Open5GS, the core network of the Lte/Nr network. Open5GS 2.7.2 and previous versions contain a security loophole, which stems from inadequate handling of specially designed PFCP data packages, which may lead to denial of service attacks.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Open5GS

Published

2025-06-18

Last Modified

2026-02-24

References

https://github.com/open5gs/open5gs/issues/3747 https://gist.github.com/scemodicecosa/581fa485f957239ea5551daa173d0189 https://access.redhat.com/security/cve/cve-2025-29646

Patch

https://github.com/open5gs/open5gs/releases

Share on: