CVE-2026-25501General(free5gc / smf)

LOWCVSS 7.5 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

free5GC SMF provides Session Management Function for free5GC, an open-source project for 5th generation (5G) mobile core networks. In versions up to and including 1.4.1, SMF panics due to nil pointer dereference and the SMF process terminates. This is triggered by a malformed PFCP SessionReportRequest on the SMF PFCP (UDP/8805) interface. No known upstream fix is available, but some workarounds are available. ACL/firewall the PFCP interface so only trusted UPF IPs can reach SMF (reduce spoofing/abuse surface); drop/inspect malformed PFCP SessionReportRequest messages at the network edge where feasible, and/or add recover() around PFCP handler dispatch to avoid whole-process termination (mitigation only).

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-476

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • smf

Threat summary

  • 4 mentions across 4 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 2 signals
  • General: 3 classified signals
  • Disclosure: 1 classified signal
  • Peaked 3d ago at 1 mentions (2026-02-24); latest day: 1
  • 4 total mentions across 4 days

Affected systems

Vendors
Products
smf

Deep dive

Activity timeline4 mentions / 4d
00111Mentions · 2026-02-24: 1Mentions · 2026-02-27: 1Mentions · 2026-02-28: 1Mentions · 2026-03-01: 1Technical Details · 2026-02-28: 1Technical Details · 2026-03-01: 102-2402-2702-2803-01
Signal classification2 categories
General
375.0%
Disclosure
125.0%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-02-241
General1
2026-02-271
General1
2026-02-281
Disclosure1
2026-03-011
General1
Full discourse4 posts
  • CRAC Learning - Tech@cracbot
    General

    CVE-2026-25501 (CVSS:6.6, HIGH) is Analyzed. free5GC SMF provides Session Management Function for free5GC, an open-source project for 5th generation (5G) mobile core..https://nvd.nist.gov/vuln/detail/CVE-2026-25501 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The post references CVE-2026-25501, noting its CVSS score and that it has been analyzed, but offers no further technical details, exploit code, or mitigation information.

    0000019
    173 followersView on X
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2026-25501 (CVSS:6.6, HIGH) is Analyzed. free5GC SMF provides Session Management Function for free5GC, an open-source project for 5th generation (5G) mobile core..https://nvd.nist.gov/vuln/detail/CVE-2026-25501 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    CVE-2026-25501 is identified with a high CVSS score affecting the free5GC SMF component, but the post contains no exploit, patch, or PoC details.

    0000025
    173 followersView on X
  • CRAC Learning - Tech@cracbot
    General

    CVE-2026-25501 (CVSS:6.6, HIGH) is Analyzed. free5GC SMF provides Session Management Function for free5GC, an open-source project for 5th generation (5G) mobile core..https://nvd.nist.gov/vuln/detail/CVE-2026-25501 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The post notes that CVE-2026-25501, a high‑severity flaw in free5GC SMF, has been analyzed, but provides no details on exploitation, patches, or technical specifics.

    0000025
    173 followersView on X
  • CVE@CVEnew
    General

    CVE-2026-25501 free5GC SMF provides Session Management Function for free5GC, an open-source project for 5th generation (5G) mobile core networks. In versions up to and including 1.4… https://www.cve.org/CVERecord?id=CVE-2026-25501

    Post summary

    The text references CVE-2026-25501 in free5GC SMF but offers no additional details about the vulnerability, exploitation, or mitigation.

    00000158
    56.5K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appfree5gcsmf-go-

Explore more