blob: a2a0db3a8276439292b73520d0ec9e2b63c63940 [file]
id: GO-2025-4164
modules:
- module: github.com/free5gc/pcf
versions:
- fixed: 1.4.0
vulnerable_at: 1.3.2
summary: Free5GC is vulnerable to DoS through its Npcf_BDTPolicyControl POST API in github.com/free5gc/pcf
cves:
- CVE-2025-60632
ghsas:
- GHSA-vgq7-9r5r-j9v3
references:
- advisory: https://github.com/advisories/GHSA-vgq7-9r5r-j9v3
- advisory: https://nvd.nist.gov/vuln/detail/CVE-2025-60632
- fix: https://github.com/free5gc/pcf/pull/53
- web: https://github.com/free5gc/free5gc
- web: https://github.com/free5gc/free5gc/issues/705
source:
id: GHSA-vgq7-9r5r-j9v3
created: 2025-12-02T13:17:17.2908697-05:00
review_status: UNREVIEWED