CVE-2025-69250General(free5gc / udm)

LOWCVSS 7.5 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

free5gc UDM provides Unified Data Management (UDM) for free5GC, an open-source project for 5th generation (5G) mobile core networks. In versions up to and including 1.4.1, the service reliably leaks detailed internal error messages (e.g., strconv.ParseInt parsing errors) to remote clients when processing invalid pduSessionId inputs. This exposes implementation details and can be used for service fingerprinting. All deployments of free5GC using the UDM Nudm_UECM DELETE service may be vulnerable. free5gc/udm pull request 76 contains a fix for the issue. No direct workaround is available at the application level. Applying the official patch is recommended.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-20CWE-754

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • udm

Threat summary

  • 5 mentions across 4 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 3 signals
  • General: 3 classified signals
  • Disclosure: 2 classified signals
  • Peaked 3d ago at 2 mentions (2026-02-24); latest day: 1
  • 5 total mentions across 4 days

Affected systems

Vendors
Products
udm

Deep dive

Activity timeline5 mentions / 4d
01122Mentions · 2026-02-24: 2Mentions · 2026-02-27: 1Mentions · 2026-02-28: 1Mentions · 2026-03-01: 1Technical Details · 2026-02-27: 1Technical Details · 2026-02-28: 1Technical Details · 2026-03-01: 102-2402-2702-2803-01
Signal classification2 categories
General
360.0%
Disclosure
240.0%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-02-242
Disclosure1General1
2026-02-271
Disclosure1
2026-02-281
General1
2026-03-011
General1
Full discourse5 posts
  • CRAC Learning - Tech@cracbot
    General

    CVE-2025-69250 (CVSS:6.6, HIGH) is Analyzed. free5gc UDM provides Unified Data Management (UDM) for free5GC, an open-source project for 5th generation (5G) mobile co..https://nvd.nist.gov/vuln/detail/CVE-2025-69250 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The post references CVE-2025-69250 and its CVSS score but offers no further technical details, exploit information, or mitigation steps.

    0000076
    173 followersView on X
  • CRAC Learning - Tech@cracbot
    General

    CVE-2025-69250 (CVSS:6.6, HIGH) is Analyzed. free5gc UDM provides Unified Data Management (UDM) for free5GC, an open-source project for 5th generation (5G) mobile co..https://nvd.nist.gov/vuln/detail/CVE-2025-69250 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The post merely notes CVE-2025-69250 with its CVSS score and links to the NVD entry, without providing exploitation details, patches, or evidence of active attacks.

    0000088
    173 followersView on X
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2025-69250 (CVSS:6.6, HIGH) is Analyzed. free5gc UDM provides Unified Data Management (UDM) for free5GC, an open-source project for 5th generation (5G) mobile co..https://nvd.nist.gov/vuln/detail/CVE-2025-69250 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The post announces the analysis of CVE-2025-69250, noting its CVSS score and association with the free5gc UDM component, but provides no PoC, exploit, or patch details.

    0000037
    173 followersView on X
  • CVE@CVEnew
    General

    CVE-2025-69250 free5gc UDM provides Unified Data Management (UDM) for free5GC, an open-source project for 5th generation (5G) mobile core networks. In versions up to and including 1… https://www.cve.org/CVERecord?id=CVE-2025-69250

    Post summary

    The text only references the CVE and the free5GC project, providing no additional details or actionable information.

    00000183
    56.5K followersView on X
  • CVEarity@CVEarity
    Disclosure

    ⚡ New CVE Alert: CVE-2025-69250 📊 Severity: 6.6 🚨 Risk Level: Medium 🧩 Affects: Multiple / Unspecified Products Reference: https://nvd.nist.gov/vuln/detail/CVE-2025-69250 #CVE-2025-69250 #CVE #Medium #CyberSecurity #InfoSec https://t.co/Ivu8uWBS3t

    Post summary

    The tweet announces a new CVE-2025-69250 with a medium severity score of 6.6, affecting unspecified products, and provides a link to the NVD entry for further details.

    0000041
    57 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appfree5gcudm-go-

Explore more