guoweifk

2 exploits Active since Mar 2025
CVE-2025-1925 WRITEUP MEDIUM WRITEUP
open5gs < 2.7.2 - Denial of Service via PDU Session ID Conflict
A vulnerability classified as problematic was found in Open5GS up to 2.7.2. Affected by this vulnerability is the function amf_nsmf_pdusession_handle_update_sm_context of the file src/amf/nsmf-handler.c of the component AMF. The manipulation leads to denial of service. The attack can be launched remotely. This vulnerability allows a single UE to crash the AMF, resulting in the complete loss of mobility and session management services and causing a network-wide outage. All registered UEs will lose connectivity, and new registrations will be blocked until the AMF is restarted, leading to a high availability impact. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue.
CVSS 5.3
CVE-2025-25774 WRITEUP MEDIUM WRITEUP
Open5GS - Denial of Service via GMM State Handling in Handover
An issue was discovered in Open5GS v2.7.2. When a UE switches between two gNBs and sends a handover request at a specific time, it may cause an exception in the AMF's internal state machine, leading to an AMF crash and resulting in a Denial of Service (DoS).
CVSS 6.5