CVE-2025-29339: High severity open5gs upf vulnerability
An issue in UPF in Open5GS UPF versions up to v2.7.2 results an assertion failure vulnerability in PFCP session parameter validation. When processing a PFCP Session Establishment Request with PDN Type=0, the UPF fails to handle the invalid value propagated from SMF (or via direct attack), triggering a fatal assertion check and causing a daemon crash.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-29339?
CVE-2025-29339 is considered a high-severity vulnerability due to its potential to cause assertion failures during PFCP session handling.
How do I fix CVE-2025-29339?
To mitigate CVE-2025-29339, update Open5GS UPF to version 2.7.3 or later.
What are the consequences of CVE-2025-29339?
Exploitation of CVE-2025-29339 can lead to crashes of the UPF, potentially disrupting network services.
Which versions of Open5GS UPF are affected by CVE-2025-29339?
Open5GS UPF versions up to and including 2.7.2 are affected by CVE-2025-29339.
Is CVE-2025-29339 a remote vulnerability?
Yes, CVE-2025-29339 can be triggered remotely through malicious PFCP Session Establishment Requests.