Assertion failure vulnerability in the PCO (Protocol Configuration Options) parser in the SMF (Session Management Function) component of Open5GS before v2.7.5 allows remote attackers to cause denial of service via specially crafted NGAP messages containing malformed length fields in protocol configuration data.
Metrics
Affected Vendors & Products
References
History
Thu, 30 Apr 2026 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Open5gs
Open5gs open5gs |
|
| Vendors & Products |
Open5gs
Open5gs open5gs |
Thu, 30 Apr 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Assertion failure vulnerability in the PCO (Protocol Configuration Options) parser in the SMF (Session Management Function) component of Open5GS before v2.7.5 allows remote attackers to cause denial of service via specially crafted NGAP messages containing malformed length fields in protocol configuration data. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2026-04-30T00:00:00.000Z
Updated: 2026-04-30T19:37:56.159Z
Reserved: 2025-08-17T00:00:00.000Z
Link: CVE-2025-56568
No data.
Status : Received
Published: 2026-04-30T20:16:23.220
Modified: 2026-04-30T20:16:23.220
Link: CVE-2025-56568
No data.