A vulnerability classified as problematic was found in Open5GS up to 2.7.3. Affected by this vulnerability is the function ngaprecvhandler/s1aprecvhandler/recv_handler of the component SCTP Partial Message Handler. The manipulation leads to reachable assertion. The attack needs to be approached locally. The patch is named cfa44575020f3fb045fd971358442053c8684d3d. It is recommended to apply a patch to fix this issue.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-7485.json"
"2026-04-12T22:13:22Z"
[
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"236708272592195309345743116922401382139",
"266985117475815159505707893933304722731",
"50089631656990493252274030914149446915",
"145939175042328406979442792962645697583",
"275694616838224944812519996709679284904",
"296944962070419949781383728697935756945",
"300951675319205105486184956364112345092",
"247919910160056093084840417266823534548",
"274139416842450466711674564105015325135",
"176424166304258035335426614203991169186",
"48830185450102507716304780526768918560"
]
},
"source": "https://github.com/open5gs/open5gs/commit/cfa44575020f3fb045fd971358442053c8684d3d",
"id": "CVE-2025-7485-03806c6e",
"signature_type": "Line",
"target": {
"file": "src/mme/s1ap-sctp.c"
}
},
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"length": 3832.0,
"function_hash": "42429509430925897440647909782092700125"
},
"source": "https://github.com/open5gs/open5gs/commit/cfa44575020f3fb045fd971358442053c8684d3d",
"id": "CVE-2025-7485-305cc250",
"signature_type": "Function",
"target": {
"function": "ngap_recv_handler",
"file": "src/amf/ngap-sctp.c"
}
},
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"length": 3832.0,
"function_hash": "124580004338984325936172407846941432463"
},
"source": "https://github.com/open5gs/open5gs/commit/cfa44575020f3fb045fd971358442053c8684d3d",
"id": "CVE-2025-7485-489334a9",
"signature_type": "Function",
"target": {
"function": "s1ap_recv_handler",
"file": "src/mme/s1ap-sctp.c"
}
},
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"length": 3370.0,
"function_hash": "13376800030624399981228641208836493922"
},
"source": "https://github.com/open5gs/open5gs/commit/cfa44575020f3fb045fd971358442053c8684d3d",
"id": "CVE-2025-7485-ad44bb83",
"signature_type": "Function",
"target": {
"function": "recv_handler",
"file": "src/mme/sgsap-sctp.c"
}
},
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"121522754593288476372833759571128415432",
"266985117475815159505707893933304722731",
"50089631656990493252274030914149446915",
"145939175042328406979442792962645697583",
"275694616838224944812519996709679284904",
"296944962070419949781383728697935756945",
"300951675319205105486184956364112345092",
"247919910160056093084840417266823534548",
"274139416842450466711674564105015325135",
"176424166304258035335426614203991169186",
"48830185450102507716304780526768918560"
]
},
"source": "https://github.com/open5gs/open5gs/commit/cfa44575020f3fb045fd971358442053c8684d3d",
"id": "CVE-2025-7485-d2b38aa5",
"signature_type": "Line",
"target": {
"file": "src/amf/ngap-sctp.c"
}
},
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"251660031026403065568141688990912201703",
"266985117475815159505707893933304722731",
"50089631656990493252274030914149446915",
"145939175042328406979442792962645697583",
"275694616838224944812519996709679284904",
"296944962070419949781383728697935756945",
"300951675319205105486184956364112345092",
"247919910160056093084840417266823534548",
"274139416842450466711674564105015325135",
"176424166304258035335426614203991169186",
"48830185450102507716304780526768918560"
]
},
"source": "https://github.com/open5gs/open5gs/commit/cfa44575020f3fb045fd971358442053c8684d3d",
"id": "CVE-2025-7485-ecd43a90",
"signature_type": "Line",
"target": {
"file": "src/mme/sgsap-sctp.c"
}
}
]