CNNVD-202508-716 Information

CNNVD ID

CNNVD-202508-716

CVE-2025-8698

  • CNNVD Published: 2025-08-07

Description (Chinese)

Open5GS是Open5GS开源的一个 5G Core 和 Epc 的 C 语言开源实现,即 Lte/Nr 网络的核心网络。 Open5GS 2.7.5及之前版本存在安全漏洞,该漏洞源于组件AMF Service存在可达断言缺陷,可能导致本地操控。

Description (English)

Open5GS is a 5G Core and Epc open-language C open source of Open5GS, the core network of the Lte/Nr network. Open5GS 2.7.5 and previous versions had a security loophole, which stemmed from the AMF Service ’ s achievable defects, which could lead to local manipulation.

Hazard Level

Critical

Vulnerability Type

其他

Affected Vendor

Open5GS

Published

2025-08-07

Last Modified

2026-02-24

References

https://vuldb.com/?ctiid.319128 https://github.com/open5gs/open5gs/commit/66bc558e417e70ae216ec155e4e81c14ae0ecf30 https://vuldb.com/?submit.621282 https://github.com/open5gs/open5gs/issues/4012 https://github.com/user-attachments/files/21356631/amf_nsmf_pdusession_handle_release_sm_context.zip https://vuldb.com/?id.319128 https://access.redhat.com/security/cve/cve-2025-8698

Patch

https://github.com/open5gs/open5gs/releases

Share on: