PT-2026-3361 · Open5Gs · Open5Gs

Linziyu

·

Published

2026-01-17

·

Updated

2026-02-09

·

CVE-2025-15530

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Open5GS versions prior to 2.7.7
Description A flaw exists in Open5GS up to version 2.7.6. A manipulation of the sgwc s11 handle create indirect data forwarding tunnel request function within the /src/sgwc/s11-handler.c file can lead to a reachable assertion. This issue can be exploited remotely. The exploit has been publicly disclosed.
Recommendations Update to Open5GS version 2.7.7 or later.

Exploit

Fix

Assertion Failure

Weakness Enumeration

Related Identifiers

CVE-2025-15530

Affected Products

Open5Gs