CVE-2025-8698 Information
Description
A vulnerability was found in Open5GS up to 2.7.5. It has been classified as problematic. Affected is the function amf_nsmf_pdusession_handle_release_sm_context of the file src/amf/nsmf-handler.c of the component AMF Service. The manipulation leads to reachable assertion. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. The name of the patch is 66bc558e417e70ae216ec155e4e81c14ae0ecf30. It is recommended to apply a patch to fix this issue.
CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
Reference
https://github.com/open5gs/open5gs/commit/66bc558e417e70ae216ec155e4e81c14ae0ecf30 https://github.com/open5gs/open5gs/issues/4012 https://github.com/user-attachments/files/21356631/amf_nsmf_pdusession_handle_release_sm_context.zip https://vuldb.com/?ctiid.319128 https://vuldb.com/?id.319128 https://vuldb.com/?submit.621282
Attack Complexity
LOW
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
NONE
Availability Impact
NONE
Base Score
LOW
Base Severity
3.3
Related CNNVD
CNNVD-202508-716 (Published: 2025-08-07)
Share on: