High severity7.5NVD Advisory· Published Apr 22, 2025· Updated Jun 17, 2026
CVE-2025-29339
CVE-2025-29339
Description
An issue in UPF in Open5GS UPF versions up to v2.7.2 results an assertion failure vulnerability in PFCP session parameter validation. When processing a PFCP Session Establishment Request with PDN Type=0, the UPF fails to handle the invalid value propagated from SMF (or via direct attack), triggering a fatal assertion check and causing a daemon crash.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Open5GS/UPFdescription
Patches
Vulnerability mechanics
References
1- github.com/open5gs/open5gs/issues/3727nvdExploitIssue TrackingVendor Advisory
News mentions
0No linked articles in our index yet.