CVE Database
/

CVE-2025-41068

Back to search

CVE-2025-41068

Published: Oct 27, 2025

Modified: Oct 29, 2025

PUBLISHED

Description

Reachable Assertion vulnerability in Open5GS up to version 2.7.6 allows attackers with connectivity to the NRF to cause a denial of service. This is achieved by sending the creation of an NF with an invalid type via SBI and then requesting its data. The NRF executes a check that crashes the process, leaving the discovery service unresponsive.

VendorProductVersions

NewPlane

Open5GS

affected
0 - <= 2.7.5

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now