CVE-2025-1925

A vulnerability classified as problematic was found in Open5GS up to 2.7.2. Affected by this vulnerability is the function amf_nsmf_pdusession_handle_update_sm_context of the file src/amf/nsmf-handler.c of the component AMF. The manipulation leads to denial of service. The attack can be launched remotely. This vulnerability allows a single UE to crash the AMF, resulting in the complete loss of mobility and session management services and causing a network-wide outage. All registered UEs will lose connectivity, and new registrations will be blocked until the AMF is restarted, leading to a high availability impact. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue.
References
Link Resource
https://github.com/guoweifk/BugReport/blob/main/Open5GS%20AMF%20Denial%20of%20Service%20via%20PDU%20Session%20ID%20Conflict Exploit Third Party Advisory
https://github.com/open5gs/open5gs/pull/3711 Issue Tracking Vendor Advisory
https://vuldb.com/?ctiid.298513 Permissions Required VDB Entry
https://vuldb.com/?id.298513 Third Party Advisory VDB Entry
https://vuldb.com/?submit.506038 Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

cpe:2.3:a:open5gs:open5gs:*:*:*:*:*:*:*:*

History

23 Jun 2025, 15:10

Type Values Removed Values Added
CPE cpe:2.3:a:open5gs:open5gs:*:*:*:*:*:*:*:*
First Time Open5gs
Open5gs open5gs
References () https://github.com/guoweifk/BugReport/blob/main/Open5GS%20AMF%20Denial%20of%20Service%20via%20PDU%20Session%20ID%20Conflict - () https://github.com/guoweifk/BugReport/blob/main/Open5GS%20AMF%20Denial%20of%20Service%20via%20PDU%20Session%20ID%20Conflict - Exploit, Third Party Advisory
References () https://github.com/open5gs/open5gs/pull/3711 - () https://github.com/open5gs/open5gs/pull/3711 - Issue Tracking, Vendor Advisory
References () https://vuldb.com/?ctiid.298513 - () https://vuldb.com/?ctiid.298513 - Permissions Required, VDB Entry
References () https://vuldb.com/?id.298513 - () https://vuldb.com/?id.298513 - Third Party Advisory, VDB Entry
References () https://vuldb.com/?submit.506038 - () https://vuldb.com/?submit.506038 - Third Party Advisory, VDB Entry
Summary
  • (es) Se ha encontrado una vulnerabilidad clasificada como problemática en Open5GS hasta la versión 2.7.2. Esta vulnerabilidad afecta a la función amf_nsmf_pdusession_handle_update_sm_context del archivo src/amf/nsmf-handler.c del componente AMF. La manipulación provoca una denegación de servicio. El ataque puede iniciarse de forma remota. Esta vulnerabilidad permite que un único UE bloquee el AMF, lo que provoca la pérdida total de los servicios de movilidad y gestión de sesiones y provoca una interrupción en toda la red. Todos los UE registrados perderán la conectividad y se bloquearán los nuevos registros hasta que se reinicie el AMF, lo que provocará un alto impacto en la disponibilidad. Se ha hecho público el exploit y puede que sea utilizado. Se recomienda aplicar un parche para solucionar este problema.

04 Mar 2025, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-04 14:15

Updated : 2025-06-23 15:10


NVD link : CVE-2025-1925

Mitre link : CVE-2025-1925

CVE.ORG link : CVE-2025-1925


JSON object : View

Products Affected

open5gs

  • open5gs
CWE
CWE-404

Improper Resource Shutdown or Release