CVE-2025-29646: OPEN5GS
High severity, CVSS 7.1. EPSS: 0.3% chance of exploitation in the next 30 days.
An issue in upf in open5gs 2.7.2 and earlier allows a remote attacker to cause a Denial of Service via a crafted PFCP SessionEstablishmentRequest packet with restoration indication = true and (teid = 0 or teid >= ogs_pfcp_pdr_teid_pool.size).
Affected products
- OPEN5GS OPEN5GS: up to and including 2.7.2
Published 2025-06-18. Last modified 2026-06-17.