Skip to content

Open5GS vulnerabilities

3 CVEs tracked

Open5GS appears in our reports primarily concerning critical flaws in its Diameter interfaces. The main themes during this period involve newly identified vulnerabilities in the S6a interface, including a stack-based buffer overflow (CVE-2024-14042) and a heap-based buffer overflow (CVE-2024-14043). Additionally, a remote Denial of Service (DoS) vulnerability was disclosed in the Gx Credit-Control-Answer handler (CVE-2025-15687). Defenders should prioritize immediate patching and closely monitor traffic directed at the Diameter S6a and Gx interfaces.

Azərbaycanca: Open5GS, hesabatlarımızda əsasən Diameter interfeyslərindəki kritik zəifliklərlə bağlı qeyd olunur. Hesabat dövründə əsas mövzu, S6a interfeysində stack-based buffer overflow (CVE-2024-14042) və heap-based buffer overflow (CVE-2024-14043) zəifliklərinin aşkarlanmasıdır. Həmçinin, Gx interfeysində uzaqdan xidmət əngəli (DoS) yarada bilən yeni bir qüsur (CVE-2025-15687) müəyyən edilib. Müdafiəçilər təcili olaraq patch tətbiq etməyə, xüsusilə Diameter S6a və Gx interfeyslərinə gələn trafiki monitorinq etməyə diqqət yetirməlidir.

This vendor's CVEs3

This hub is built from skopnix's own reporting on Open5GS: the overview is AI-written from that coverage and every CVE links to its grounded explainer. KEV status comes from CISA's Known Exploited Vulnerabilities catalog and EPSS from FIRST — vendor, version and score details are never invented.