CVE-2025-14955
Open5GS PFCP handler.c ogs_pfcp_handle_create_pdr initialization
CVSS Score
3.7
EPSS Score
0.0%
EPSS Percentile
0th
A vulnerability was found in Open5GS up to 2.7.5. Affected by this vulnerability is the function ogs_pfcp_handle_create_pdr in the library lib/pfcp/handler.c of the component PFCP. The manipulation results in improper initialization. It is possible to launch the attack remotely. This attack is characterized by high complexity. The exploitation appears to be difficult. The exploit has been made public and could be used. The patch is identified as 773117aa5472af26fc9f80e608d3386504c3bdb7. It is best practice to apply a patch to resolve this issue.
| CWE | CWE-665 |
| Vendor | n/a |
| Product | open5gs |
| Published | Dec 19, 2025 |
| Last Updated | Feb 24, 2026 |
Stay Ahead of the Next One
Get instant alerts for n/a open5gs
Be the first to know when new low vulnerabilities affecting n/a open5gs are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L/E:P/RL:O/RC:C Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Affected Versions
n/a / Open5GS
2.7.0 2.7.1 2.7.2 2.7.3 2.7.4 2.7.5
References
vuldb.com: https://vuldb.com/?id.337591 vuldb.com: https://vuldb.com/?ctiid.337591 vuldb.com: https://vuldb.com/?submit.716841 github.com: https://github.com/open5gs/open5gs/issues/4182 github.com: https://github.com/open5gs/open5gs/issues/4182#issuecomment-3616081878 github.com: https://github.com/open5gs/open5gs/issues/4182#issue-3670797098 github.com: https://github.com/open5gs/open5gs/commit/773117aa5472af26fc9f80e608d3386504c3bdb7 github.com: https://github.com/open5gs/open5gs/
Credits
๐ ZiyuLin (VulDB User)