๐Ÿ” CVE Alert

CVE-2025-14955

LOW 3.7

Open5GS PFCP handler.c ogs_pfcp_handle_create_pdr initialization

CVSS Score
3.7
EPSS Score
0.0%
EPSS Percentile
0th

A vulnerability was found in Open5GS up to 2.7.5. Affected by this vulnerability is the function ogs_pfcp_handle_create_pdr in the library lib/pfcp/handler.c of the component PFCP. The manipulation results in improper initialization. It is possible to launch the attack remotely. This attack is characterized by high complexity. The exploitation appears to be difficult. The exploit has been made public and could be used. The patch is identified as 773117aa5472af26fc9f80e608d3386504c3bdb7. It is best practice to apply a patch to resolve this issue.

CWE CWE-665
Vendor n/a
Product open5gs
Published Dec 19, 2025
Last Updated Feb 24, 2026
Stay Ahead of the Next One

Get instant alerts for n/a open5gs

Be the first to know when new low vulnerabilities affecting n/a open5gs are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L/E:P/RL:O/RC:C
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

n/a / Open5GS
2.7.0 2.7.1 2.7.2 2.7.3 2.7.4 2.7.5

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
vuldb.com: https://vuldb.com/?id.337591 vuldb.com: https://vuldb.com/?ctiid.337591 vuldb.com: https://vuldb.com/?submit.716841 github.com: https://github.com/open5gs/open5gs/issues/4182 github.com: https://github.com/open5gs/open5gs/issues/4182#issuecomment-3616081878 github.com: https://github.com/open5gs/open5gs/issues/4182#issue-3670797098 github.com: https://github.com/open5gs/open5gs/commit/773117aa5472af26fc9f80e608d3386504c3bdb7 github.com: https://github.com/open5gs/open5gs/

Credits

๐Ÿ” ZiyuLin (VulDB User)