PT-2026-1850 · Openairinterface · Openairinterface Cn5G Amf
Published
2026-01-07
·
Updated
2026-01-07
·
CVE-2025-65805
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
OpenAirInterface CN5G AMF versions prior to v2.1.9
Description
A buffer overflow condition exists in the processing of NAS messages. Remote attackers can potentially cause a denial-of-service and possibly execute code by sending an imsi string exceeding 1000 characters to port N1. The vulnerable component is the AMF when processing NAS messages. The
imsi string is the vulnerable parameter.Recommendations
Update to a version greater than v2.1.9.
Fix
DoS
Stack Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Openairinterface Cn5G Amf