{"dataType":"CVE_RECORD","dataVersion":"5.2","cveMetadata":{"cveId":"CVE-2025-15531","assignerOrgId":"1af790b2-7ee1-4545-860a-a788eba489b5","state":"PUBLISHED","assignerShortName":"VulDB","dateReserved":"2026-01-16T16:35:53.556Z","datePublished":"2026-01-17T16:02:07.934Z","dateUpdated":"2026-02-23T08:32:32.440Z"},"containers":{"cna":{"providerMetadata":{"orgId":"1af790b2-7ee1-4545-860a-a788eba489b5","shortName":"VulDB","dateUpdated":"2026-02-23T08:32:32.440Z"},"title":"Open5GS context.c sgwc_bearer_add assertion","problemTypes":[{"descriptions":[{"type":"CWE","cweId":"CWE-617","lang":"en","description":"Reachable Assertion"}]}],"affected":[{"vendor":"n/a","product":"Open5GS","versions":[{"version":"2.7.0","status":"affected"},{"version":"2.7.1","status":"affected"},{"version":"2.7.2","status":"affected"},{"version":"2.7.3","status":"affected"},{"version":"2.7.4","status":"affected"},{"version":"2.7.5","status":"affected"}],"cpes":["cpe:2.3:a:open5gs:open5gs:*:*:*:*:*:*:*:*"]}],"descriptions":[{"lang":"en","value":"A vulnerability was identified in Open5GS up to 2.7.5. This vulnerability affects the function sgwc_bearer_add of the file src/sgwc/context.c. The manipulation leads to reachable assertion. The attack is possible to be carried out remotely. The exploit is publicly available and might be used. The issue report is flagged as already-fixed."}],"metrics":[{"cvssV4_0":{"version":"4.0","baseScore":6.9,"vectorString":"CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P","baseSeverity":"MEDIUM"}},{"cvssV3_1":{"version":"3.1","baseScore":5.3,"vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L/E:P/RL:O/RC:C","baseSeverity":"MEDIUM"}},{"cvssV3_0":{"version":"3.0","baseScore":5.3,"vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L/E:P/RL:O/RC:C","baseSeverity":"MEDIUM"}},{"cvssV2_0":{"version":"2.0","baseScore":5,"vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P/E:POC/RL:OF/RC:C"}}],"timeline":[{"time":"2026-01-16T00:00:00.000Z","lang":"en","value":"Advisory disclosed"},{"time":"2026-01-16T01:00:00.000Z","lang":"en","value":"VulDB entry created"},{"time":"2026-01-18T01:32:16.000Z","lang":"en","value":"VulDB entry last update"}],"credits":[{"lang":"en","value":"LinZiyu (VulDB User)","type":"reporter"}],"references":[{"url":"https://vuldb.com/?id.341598","name":"VDB-341598 | Open5GS context.c sgwc_bearer_add assertion","tags":["vdb-entry","technical-description"]},{"url":"https://vuldb.com/?ctiid.341598","name":"VDB-341598 | CTI Indicators (IOB, IOC, IOA)","tags":["signature","permissions-required"]},{"url":"https://vuldb.com/?submit.729339","name":"Submit #729339 | Open5GS SGWC v2.7.6 Denial of Service","tags":["third-party-advisory"]},{"url":"https://github.com/open5gs/open5gs/issues/4233","tags":["issue-tracking"]},{"url":"https://github.com/open5gs/open5gs/issues/4233#issue-3776216182","tags":["exploit","issue-tracking"]},{"url":"https://github.com/open5gs/open5gs/","tags":["product"]}]},"adp":[{"metrics":[{"other":{"type":"ssvc","content":{"timestamp":"2026-01-21T16:31:39.683316Z","id":"CVE-2025-15531","options":[{"Exploitation":"poc"},{"Automatable":"yes"},{"Technical Impact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}}],"title":"CISA ADP Vulnrichment","providerMetadata":{"orgId":"134c704f-9b21-4f2e-91b3-4a467353bcc0","shortName":"CISA-ADP","dateUpdated":"2026-01-21T16:31:46.811Z"}}]}}