Reachable Assertion vulnerability in Open5GS up to version 2.7.5 allows attackers with connectivity to the NRF to cause a denial of service. An SBI request that deletes the NRF's own registry causes a check that ends up crashing the NRF process and renders the discovery service unavailable.
Advisories

No advisories yet.

Fixes

Solution

The vulnerabilitiy has been fixed by the Open5GS team in version v2.7.5.


Workaround

No workaround given by the vendor.

History

Mon, 27 Oct 2025 22:30:00 +0000

Type Values Removed Values Added
First Time appeared Open5gs
Open5gs open5gs
Vendors & Products Open5gs
Open5gs open5gs

Mon, 27 Oct 2025 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 27 Oct 2025 13:00:00 +0000

Type Values Removed Values Added
Description Reachable Assertion vulnerability in Open5GS up to version 2.7.5 allows attackers with connectivity to the NRF to cause a denial of service. An SBI request that deletes the NRF's own registry causes a check that ends up crashing the NRF process and renders the discovery service unavailable.
Title Reachable Assertion vulnerability in Open5GS
Weaknesses CWE-617
References
Metrics cvssV4_0

{'score': 8.7, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: INCIBE

Published:

Updated: 2025-10-27T15:09:47.594Z

Reserved: 2025-04-16T09:09:34.457Z

Link: CVE-2025-41067

cve-icon Vulnrichment

Updated: 2025-10-27T15:09:42.992Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-10-27T13:15:44.973

Modified: 2025-10-27T13:19:49.063

Link: CVE-2025-41067

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-10-27T22:03:41Z