CVE-2025-69248Disclosure(free5gc / amf)

LOWCVSS 7.5 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

free5GC is an open-source project for 5th generation (5G) mobile core networks. Versions up to and including 1.4.1 of free5GC's AMF service have a Buffer Overflow vulnerability leading to Denial of Service. Remote unauthenticated attackers can crash the AMF service by sending a specially crafted NAS Registration Request with a malformed 5GS Mobile Identity, causing complete denial of service for the 5G core network. All deployments of free5GC using the AMF component may be affected. Pull request 43 of the free5gc/nas repo contains a fix. No direct workaround is available at the application level. Applying the official patch is recommended.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-129

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • amf

Threat summary

  • 5 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 5 signals
  • Disclosure: 4 classified signals
  • General: 1 classified signal
  • Peaked 2d ago at 3 mentions (2026-02-24); latest day: 1
  • 5 total mentions across 3 days

Affected systems

Vendors
Products
amf

Deep dive

Activity timeline5 mentions / 3d
01223Mentions · 2026-02-24: 3Mentions · 2026-02-27: 1Mentions · 2026-02-28: 1Technical Details · 2026-02-24: 3Technical Details · 2026-02-27: 1Technical Details · 2026-02-28: 102-2402-2702-28
Signal classification2 categories
Disclosure
480.0%
General
120.0%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-02-243
Disclosure3
2026-02-271
Disclosure1
2026-02-281
General1
Full discourse5 posts
  • transilienceai@transilienceai
    Disclosure

    @VulmonFeeds CVE-2025-69248 is a buffer overflow vulnerability in the AMF (Access and Mobility Management Function) service of free5GC, an open-source 5G mobile core network implementation, affecting versions up to and including 1.4.1. 📡 #CyberSecurity #5G

    Post summary

    CVE-2025-69248 is a buffer overflow vulnerability in the AMF service of free5GC, impacting versions up to 1.4.1.

    1000043
    319 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2025-69248 Buffer Overflow in free5GC AMF Service Enables Unauthenticated Denial of Service Attack https://vulmon.com/vulnerabilitydetails?qid=CVE-2025-69248

    Post summary

    The post announces a buffer overflow vulnerability in free5GC AMF that can cause unauthenticated DoS, with no PoC, exploit, patch, or active exploitation details provided.

    1000049
    4.0K followersView on X
  • CRAC Learning - Tech@cracbot
    General

    CVE-2025-69248 (CVSS:6.6, HIGH) is Analyzed. free5GC is an open-source project for 5th generation (5G) mobile core networks. Versions up to and including 1.4.1 of fr..https://nvd.nist.gov/vuln/detail/CVE-2025-69248 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The post only cites CVE-2025-69248, provides its CVSS score, and links to the NVD entry, without offering exploitation or mitigation information.

    0000079
    173 followersView on X
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2025-69248 (CVSS:6.6, HIGH) is Analyzed. free5GC is an open-source project for 5th generation (5G) mobile core networks. Versions up to and including 1.4.1 of fr..https://nvd.nist.gov/vuln/detail/CVE-2025-69248 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The post announces CVE‑2025‑69248 affecting free5GC up to version 1.4.1, noting a CVSS score of 6.6 (HIGH), but provides no details on exploitation, PoC, or mitigation.

    0000019
    173 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2025-69248 free5GC is an open-source project for 5th generation (5G) mobile core networks. Versions up to and including 1.4.1 of free5GC's AMF service have a Buffer Overflow vul… https://www.cve.org/CVERecord?id=CVE-2025-69248

    Post summary

    The CVE-2025-69248 vulnerability is a buffer overflow in free5GC's AMF service up to version 1.4.1, with no PoC, exploit, or patch mentioned.

    00000205
    56.5K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appfree5gcamf-go-

Explore more