What is CVE-2025-15684?
This vulnerability exists in Open5GS versions up to 2.7.6, affecting the `diam_log_func` function in `lib/diameter/common/init.c` within the CER Handler component. It allows remote attackers to trigger a reachable assertion. The exploit is publicly available, and immediate upgrade is required.
Azərbaycanca: Bu zəiflik Open5GS-in 2.7.6 versiyasına qədər olan sistemlərində `lib/diameter/common/init.c` faylındakı `diam_log_func` funksiyasında aşkarlanıb. Remote hücum nəticəsində reachable assertion yarana bilər. İstismar artıq ictimaiyyətə açıqdır, dərhal müvafiq versiyaya yüksəltmə aparılmalıdır.
FAQ2
Which component of Open5GS does CVE-2025-15684 affect?
The vulnerability affects the `diam_log_func` function in `lib/diameter/common/init.c` within the CER Handler component.
What is the primary recommended mitigation for CVE-2025-15684?
An immediate upgrade to the appropriate version is required.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.