Free5GC is vulnerable to DoS through its Npcf_BDTPolicyControl POST API
Moderate severity
GitHub Reviewed
Published
Nov 24, 2025
to the GitHub Advisory Database
•
Updated Nov 25, 2025
Description
Published by the National Vulnerability Database
Nov 24, 2025
Published to the GitHub Advisory Database
Nov 24, 2025
Reviewed
Nov 25, 2025
Last updated
Nov 25, 2025
An issue was discovered in Free5GC v4.0.0 and v4.0.1 allowing an attacker to cause a denial of service via crafted POST request to the Npcf_BDTPolicyControl API.
References