Improper Input Validation in free5GC Product by free5GC
CVE-2025-70123
7.5HIGH
What is CVE-2025-70123?
An improper input validation vulnerability in free5GC's UPF component allows remote attackers to exploit malformed PFCP Association Setup Requests. This violation of 3GPP TS 29.244 can trigger a series of cascading failures leading to denial of service, affecting service stability and degrading the operational performance of the network components.
