📦 Free5gc

by Free5gc

🔍 What is Free5gc?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-4659

CRITICAL CVSS 9.8 Oct 2, 2023

This CVE describes a critical Cross-Site Request Forgery vulnerability in Free5GC where attackers can bypass authentication by manipulating tokens or omitting them entirely. Unprivileged remote users ...

CVE-2025-70122

HIGH CVSS 7.5 Feb 13, 2026

A heap buffer overflow vulnerability in free5GC's UPF component allows remote attackers to crash the UPF service via specially crafted PFCP Session Modification Requests. This causes denial of service...

CVE-2025-70123

HIGH CVSS 7.5 Feb 13, 2026

A protocol compliance vulnerability in free5GC's UPF component allows remote attackers to send malformed PFCP Association Setup Requests that violate 3GPP standards. This causes the UPF to enter an in...

CVE-2025-70121

HIGH CVSS 7.5 Feb 13, 2026

A remote array index out-of-bounds vulnerability in free5GC's AMF component allows attackers to crash the AMF service via specially crafted 5GS Mobile Identity in NAS Registration Request messages. Th...

CVE-2025-65561

HIGH CVSS 7.5 Dec 18, 2025

A vulnerability in free5GC's LocalNode.Sess function allows attackers to send crafted PFCP Session Modification Requests with malicious Local SEID headers, causing denial of service or other impacts. ...

CVE-2025-65562

HIGH CVSS 7.5 Dec 18, 2025

CVE-2025-65562 is an unauthenticated denial-of-service vulnerability in free5GC UPF where specially crafted PFCP Session Deletion Requests with large SEID values cause integer underflow and runtime cr...

CVE-2025-60638

HIGH CVSS 7.5 Nov 24, 2025

This vulnerability in Free5GC allows attackers to cause denial of service by sending specially crafted POST requests to the Nnssf_NSSAIAvailability API. It affects Free5GC versions 4.0.0 and 4.0.1, po...

CVE-2025-63679

HIGH CVSS 7.5 Nov 12, 2025

A buffer overflow vulnerability in free5gc AMF component allows remote attackers to crash the AMF process by sending a specially crafted UplinkRANConfigurationTransfer NGAP message. This affects all f...

CVE-2023-47347

HIGH CVSS 7.5 Nov 15, 2023

A buffer overflow vulnerability in free5gc 3.3.0 allows attackers to cause denial of service by sending specially crafted PFCP messages with manipulated sequence numbers. This affects organizations ru...

CVE-2023-47346

HIGH CVSS 7.5 Nov 13, 2023

A buffer overflow vulnerability in free5gc's UPF and SMF components allows attackers to cause denial of service by sending specially crafted PFCP messages. This affects organizations running vulnerabl...

CVE-2026-2525

MEDIUM CVSS 5.3 Feb 16, 2026

A denial-of-service vulnerability exists in Free5GC's PFCP UDP Endpoint component, allowing remote attackers to crash the service by sending specially crafted packets. This affects all Free5GC deploym...

CVE-2026-1975

MEDIUM CVSS 5.3 Feb 6, 2026

A null pointer dereference vulnerability in Free5GC's pfcp_reports.go allows remote attackers to cause denial of service by triggering the identityTriggerType function. This affects all Free5GC deploy...

CVE-2026-1976

MEDIUM CVSS 5.3 Feb 6, 2026

A null pointer dereference vulnerability in Free5GC's SMF component allows remote attackers to cause denial of service by exploiting the SessionDeletionResponse function. This affects Free5GC deployme...

CVE-2026-1973

MEDIUM CVSS 5.3 Feb 6, 2026

A null pointer dereference vulnerability in Free5GC's SMF component allows remote attackers to cause denial of service by exploiting the establishPfcpSession function. This affects all Free5GC deploym...

CVE-2026-1974

MEDIUM CVSS 5.3 Feb 6, 2026

A denial-of-service vulnerability exists in Free5GC's SMF component where the ResolveNodeIdToIp function can be manipulated by remote attackers. This affects Free5GC deployments up to version 4.1.0, p...

CVE-2026-1684

MEDIUM CVSS 5.3 Jan 30, 2026

A denial-of-service vulnerability exists in Free5GC SMF's PFCP UDP Endpoint component, specifically in the HandleReports function. Attackers can remotely trigger this vulnerability to crash the SMF se...

CVE-2026-1682

MEDIUM CVSS 5.3 Jan 30, 2026

A null pointer dereference vulnerability in Free5GC SMF's PFCP UDP endpoint allows remote attackers to cause denial of service by sending specially crafted PFCP Association Release Request messages. T...

CVE-2026-1683

MEDIUM CVSS 5.3 Jan 30, 2026

A denial-of-service vulnerability exists in Free5GC SMF's PFCP handler that allows remote attackers to crash the service by sending specially crafted PFCP Session Report Request messages. This affects...

CVE-2025-60633

MEDIUM CVSS 6.5 Nov 24, 2025

A vulnerability in Free5GC versions 4.0.0 and 4.0.1 allows attackers to cause denial of service through the Nudm_SubscriberDataManagement API. This affects 5G core network deployments using these vuln...

CVE-2025-60632

MEDIUM CVSS 6.5 Nov 24, 2025

This vulnerability in Free5GC allows attackers to cause denial of service by sending specially crafted POST requests to the Npcf_BDTPolicyControl API. Systems running Free5GC v4.0.0 or v4.0.1 are affe...

CVE-2025-29632

MEDIUM CVSS 5.4 May 29, 2025

A buffer overflow vulnerability in Free5gc v4.0.0 allows remote attackers to cause denial of service by sending specially crafted messages to the AMF component. This affects organizations running vuln...