Description
A vulnerability was detected in Open5GS up to 2.7.6. Affected is the function diam_log_func of the file lib/diameter/common/init.c of the component CER Handler. The manipulation results in reachable assertion. The attack can be executed remotely. The exploit is now public and may be used. Upgrading to version 2.7.7 is able to address this issue. The patch is identified as c1a803516a3c0485696cb9bcca7a80ad857c7383. It is advisable to upgrade the affected component.
Published: 2026-08-12
Score: 6.9 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability arises in the CER Handler component of Open5GS, specifically within the diam_log_func function in lib/diameter/common/init.c. An attacker can manipulate input to trigger a reachable assertion that causes the component to crash. The resulting denial of service exposes the system to potential service disruption. The CVE description indicates that this flaw can be exploited remotely and that the exploit code is publicly available.

Affected Systems

This issue affects all installations of Open5GS up to and including version 2.7.6. The vulnerability has been fixed in version 2.7.7, which includes the patch identified by commit c1a803516a3c0485696cb9bcca7a80ad857c7383. All users of the Open5GS Open5GS product should review their deployment versions and ensure they are running the corrected release.

Risk and Exploitability

The CVSS score of 6.9 classifies the flaw as a moderate‑severity problem, but the EPSS score of less than 1 % indicates a very low likelihood of exploitation in the wild. The flaw is not listed in the CISA KEV catalog and the attack vector is remote. The combination of a reachable assertion and potential for service crash means that an attacker who successfully triggers the condition could cause the impacted service to become unavailable, impacting availability for connected users and potentially affecting the overall reliability of the network infrastructure.

Generated by OpenCVE AI on August 12, 2026 at 15:02 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade Open5GS to version 2.7.7 or later, which includes the fix for this assertion failure.
  • Apply the commit c1a803516a3c0485696cb9bcca7a80ad857c7383 to the source code base if the deployment uses custom builds.
  • Implement a service‑restart or watchdog mechanism to automatically recover the CER Handler component after a crash, ensuring continuous authentication services.

Generated by OpenCVE AI on August 12, 2026 at 15:02 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 13 Aug 2026 16:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 12 Aug 2026 02:45:00 +0000

Type Values Removed Values Added
Description A vulnerability was detected in Open5GS up to 2.7.6. Affected is the function diam_log_func of the file lib/diameter/common/init.c of the component CER Handler. The manipulation results in reachable assertion. The attack can be executed remotely. The exploit is now public and may be used. Upgrading to version 2.7.7 is able to address this issue. The patch is identified as c1a803516a3c0485696cb9bcca7a80ad857c7383. It is advisable to upgrade the affected component.
Title Open5GS CER init.c diam_log_func assertion
First Time appeared Open5gs
Open5gs open5gs
Weaknesses CWE-617
CPEs cpe:2.3:a:open5gs:open5gs:*:*:*:*:*:*:*:*
Vendors & Products Open5gs
Open5gs open5gs
References
Metrics cvssV2_0

{'score': 5, 'vector': 'AV:N/AC:L/Au:N/C:N/I:N/A:P/E:POC/RL:OF/RC:C'}

cvssV3_0

{'score': 5.3, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L/E:P/RL:O/RC:C'}

cvssV3_1

{'score': 5.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L/E:P/RL:O/RC:C'}

cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-08-13T15:16:27.774Z

Reserved: 2026-08-09T17:44:28.777Z

Link: CVE-2025-15684

cve-icon Vulnrichment

Updated: 2026-08-13T15:16:21.416Z

cve-icon NVD

Status : Deferred

Published: 2026-08-12T03:16:41.210

Modified: 2026-08-13T16:17:50.097

Link: CVE-2025-15684

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-12T15:30:02Z

Weaknesses