CVE-2025-56394

Free5gc 4.0.1 is vulnerable to Buffer Overflow. The AMF incorrectly validates the 5GS mobile identity, resulting in slice reference overflow.
References
Link Resource
https://gist.github.com/DDGod2025/532691e3e2db9b47c67c3d153c026e62 Exploit Third Party Advisory
https://github.com/free5gc/free5gc/issues/690 Exploit Issue Tracking Patch
Configurations

Configuration 1 (hide)

cpe:2.3:a:free5gc:free5gc:4.0.1:*:*:*:*:*:*:*

History

08 Oct 2025, 17:56

Type Values Removed Values Added
First Time Free5gc free5gc
Free5gc
CPE cpe:2.3:a:free5gc:free5gc:4.0.1:*:*:*:*:*:*:*
References () https://gist.github.com/DDGod2025/532691e3e2db9b47c67c3d153c026e62 - () https://gist.github.com/DDGod2025/532691e3e2db9b47c67c3d153c026e62 - Exploit, Third Party Advisory
References () https://github.com/free5gc/free5gc/issues/690 - () https://github.com/free5gc/free5gc/issues/690 - Exploit, Issue Tracking, Patch

24 Sep 2025, 19:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
CWE CWE-122

23 Sep 2025, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-09-23 18:15

Updated : 2025-10-08 17:56


NVD link : CVE-2025-56394

Mitre link : CVE-2025-56394

CVE.ORG link : CVE-2025-56394


JSON object : View

Products Affected

free5gc

  • free5gc
CWE
CWE-122

Heap-based Buffer Overflow