CVE-2026-78186
- EPSS 0.39%
- Veröffentlicht 24.08.2026 05:16:55
- Zuletzt bearbeitet 24.08.2026 16:41:13
A flaw has been found in Open5GS up to 2.8.0. This affects an unknown function of the file src/hss/hss-cx-path.c of the component HSS. This manipulation of the argument User-Name causes reachable assertion. The attack is possible to be carried out re...
CVE-2026-78157
- EPSS 0.23%
- Veröffentlicht 24.08.2026 01:16:56
- Zuletzt bearbeitet 24.08.2026 18:17:25
A vulnerability was detected in Open5GS 2.8.0. This affects the function pcrf_rx_aar_cb of the file src/pcrf/pcrf-rx-path.c of the component Rx AA-Request Handler. Performing a manipulation results in out-of-bounds read. It is possible to initiate th...
CVE-2026-78158
- EPSS 0.21%
- Veröffentlicht 24.08.2026 01:16:56
- Zuletzt bearbeitet 24.08.2026 16:40:53
A flaw has been found in Open5GS 2.8.0. This vulnerability affects unknown code of the component AMF UEContextReleaseRequest Path Handler. Executing a manipulation can lead to improper authorization. It is possible to launch the attack remotely.
CVE-2026-78156
- EPSS 0.33%
- Veröffentlicht 24.08.2026 00:16:47
- Zuletzt bearbeitet 24.08.2026 16:40:53
A security vulnerability has been detected in Open5GS 2.8.0. Affected by this issue is the function hss_ogs_diam_s6a_air_cb of the file src/hss/hss-s6a-path.c of the component S6a Authentication-Information-Request Handler. Such manipulation of the a...
CVE-2026-71676
- EPSS 0.18%
- Veröffentlicht 18.08.2026 00:00:00
- Zuletzt bearbeitet 19.08.2026 13:18:06
Buffer Overflow vulnerability in Open5GS v.2.7.0 allows a remote attacker to cause a denial of service via the NAS 5GS decoder chain, triggered when the message type byte of a NAS PDU is mutated
CVE-2026-71675
- EPSS 0.18%
- Veröffentlicht 18.08.2026 00:00:00
- Zuletzt bearbeitet 19.08.2026 13:18:06
An issue in Open5GS v.2.7.0 allows a remote attacker to cause a denial of service via the ngap_send_to_nas() function in src/amf/ngap-path.c
CVE-2025-15687
- EPSS 0.61%
- Veröffentlicht 12.08.2026 02:45:10
- Zuletzt bearbeitet 12.08.2026 20:59:21
A security flaw has been discovered in Open5GS up to 2.7.6. Impacted is the function smf_gx_cca_cb of the component SMF Diameter Gx Credit-Control-Answer Handler. The manipulation results in denial of service. The attack can be launched remotely. The...
CVE-2025-15686
- EPSS 0.51%
- Veröffentlicht 12.08.2026 02:30:08
- Zuletzt bearbeitet 12.08.2026 20:59:21
A vulnerability has been found in Open5GS up to 2.7.6. Affected by this issue is the function fd_msg_sess_get of the component HSS Service. Such manipulation of the argument Session-Id leads to denial of service. The attack may be performed from remo...
CVE-2025-15685
- EPSS 0.38%
- Veröffentlicht 12.08.2026 02:15:08
- Zuletzt bearbeitet 12.08.2026 20:59:21
A flaw has been found in Open5GS up to 2.7.1. Affected by this vulnerability is an unknown functionality of the component freeDiameter. This manipulation causes memory corruption. The attack is possible to be carried out remotely.
CVE-2025-15684
- EPSS 0.71%
- Veröffentlicht 12.08.2026 02:00:10
- Zuletzt bearbeitet 13.08.2026 16:17:50
A vulnerability was detected in Open5GS up to 2.7.6. Affected is the function diam_log_func of the file lib/diameter/common/init.c of the component CER Handler. The manipulation results in reachable assertion. The attack can be executed remotely. The...