Metrics
Affected Vendors & Products
Fri, 19 Dec 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 19 Dec 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw has been found in Open5GS up to 2.7.5. This impacts the function ogs_pfcp_handle_create_pdr in the library lib/pfcp/handler.c of the component FAR-ID Handler. Executing manipulation can lead to null pointer dereference. The attack may be performed from remote. The attack requires a high level of complexity. The exploitability is said to be difficult. The exploit has been published and may be used. This patch is called 93a9fd98a8baa94289be3b982028201de4534e32. It is advisable to implement a patch to correct this issue. | |
| Title | Open5GS FAR-ID handler.c ogs_pfcp_handle_create_pdr null pointer dereference | |
| Weaknesses | CWE-404 CWE-476 |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-12-19T16:32:56.837Z
Reserved: 2025-12-19T08:31:23.204Z
Link: CVE-2025-14953
Updated: 2025-12-19T16:32:36.092Z
Status : Awaiting Analysis
Published: 2025-12-19T16:15:54.863
Modified: 2025-12-19T18:00:18.330
Link: CVE-2025-14953
No data.
OpenCVE Enrichment
No data.