216.73.217.24

CVE-2025-15555

· Published 04/02/2026 21:15 · Modified 05/02/2026 21:15

Labels: CVE-2025-15555 2026-02-04CVE-2025-15555CWE-119[email protected]

Essential information

Published
04/02/2026 21:15
Modified
05/02/2026 21:15
Author
Creator
CVSS
6.9 MEDIUM (v3) 6.9 MEDIUM (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A security flaw has been discovered in Open5GS up to 2.7.6. Affected by this vulnerability is the function hss_ogs_diam_cx_mar_cb of the file src/hss/hss-cx-path.c of the component VoLTE Cx-Test. The manipulation of the argument OGS_KEY_LEN results in stack-based buffer overflow. The attack may be launched remotely. The patch is identified as 54dda041211098730221d0ae20a2f9f9173e7a21. A patch should be applied to remediate this issue.

NVD status

Status
Undergoing Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
open5gs / open5gs cpe:2.3:a:open5gs:open5gs:*:*:*:*:*:*:*:*

References