CVE Details
Basic Information
| Title | Open5GS NGAP PathSwitchRequest Message ngap-handler.c ngap_handle_path_switch_request_transfer assertion |
|---|---|
| Type | cve |
| Published | 2025-06-03T14:00:21.279Z |
| Last Seen |
Product Information
| Vendor | n/a |
|---|---|
| Product | Open5GS |
| Version | 2.7.0 |
CVSS Information
| Base Score | 6.9 (MEDIUM) |
|---|---|
| Attack Vector | CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N |
| Confidentiality Impact | |
| Integrity Impact | |
| Availability Impact |
AI Analysis
| AI Description | A vulnerability in Open5GS up to version 2.7.3 allows remote attackers to trigger an assertion in the NGAP PathSwitchRequest handler, potentially causing service disruption. The issue has been publicly disclosed and a patch is available. |
|---|---|
| AI Severity | Medium |
| Vendor | Open5GS Community |
| Product | Open5GS |
| Affected Version | 2.7.0, 2.7.1, 2.7.2, 2.7.3 |
Additional Information
| CVE List | |
|---|---|
| CWE List | CWE-617 |
| Bulletin Family | |
| Source Data | n/a Open5GS 2.7.0 n/a Open5GS 2.7.1 n/a Open5GS 2.7.2 n/a Open5GS 2.7.3 |
Source Information
| Source Data | n/a Open5GS 2.7.0 n/a Open5GS 2.7.1 n/a Open5GS 2.7.2 n/a Open5GS 2.7.3 |
|---|---|
| Source Link |
Description
A vulnerability classified as problematic was found in Open5GS up to 2.7.3. Affected by this vulnerability is the function ngap_handle_path_switch_request_transfer of the file src/smf/ngap-handler.c of the component NGAP PathSwitchRequest Message Handler. The manipulation leads to reachable assertion. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The patch is named 2daa44adab762c47a8cef69cc984946973a845b3. It is recommended to apply a patch to fix this issue.
CVSS Score Summary
Base Score: 6.9 (MEDIUM)