PT-2025-29342 · Open5Gs · Open5Gs

·

CVE-2025-7485

·

Publicado

2025-07-12

·

Atualizado

2025-07-12

CVSS v4.0

4.8

Média

VetorAV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X
Name of the Vulnerable Software and Affected Versions: Open5GS versions up to 2.7.3
Description: A problematic issue exists in Open5GS related to the SCTP Partial Message Handler component. The ngap recv handler/s1ap recv handler/recv handler function is susceptible to a reachable assertion due to manipulation. This issue requires local access for exploitation.
Recommendations: Apply the patch cfa44575020f3fb045fd971358442053c8684d3d to resolve the issue.

Exploit

Correção

Assertion Failure

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-7485

Produtos afetados

Open5Gs