CVE-2025-65568
7.5omec-project · UPF
A denial-of-service vulnerability in the omec-project UPF pfcpiface component allows remote attackers to crash the service via a malformed PFCP Session Establishment Request.
Executive summary
A critical denial-of-service vulnerability in the omec-project UPF pfcpiface component allows unauthenticated attackers to disrupt critical user-plane network services.
Vulnerability
The vulnerability is an out-of-bounds read error occurring in the parseFAR function when processing PFCP Session Establishment Requests with truncated IPv4 address fields. This flaw is remotely triggerable by an unauthenticated attacker sending crafted packets to the N4/PFCP endpoint.
Business impact
The successful exploitation of this vulnerability results in repeated service crashes, causing significant downtime for user-plane traffic. Given the CVSS score of 7.5, this high-severity flaw poses a substantial risk to network availability, potentially leading to widespread communication outages for dependent systems.
Remediation
Immediate Action: Monitor the omec-project repository for the release of a patched version of the pfcpiface component and apply the update as soon as it becomes available.
Proactive Monitoring: Implement network traffic monitoring on the N4/PFCP interface to identify and alert on malformed PFCP packets or anomalous crash patterns in the UPF service.
Compensating Controls: Restrict network access to the UPF N4/PFCP endpoint to only trusted, authorized network elements to prevent unauthorized exploitation of this interface.
Exploitation status
Public Exploit Available: Unknown
Analyst recommendation
This vulnerability represents a significant risk to network stability and must be addressed with urgency. Administrators should prioritize restricting access to the vulnerable N4/PFCP endpoint while awaiting an official patch from the omec-project maintainers.