CVE-2026-2524
- EPSS 0.03%
- Veröffentlicht 16.02.2026 00:32:07
- Zuletzt bearbeitet 18.02.2026 19:07:38
A flaw has been found in Open5GS 2.7.6. The impacted element is the function mme_s11_handle_create_session_response of the component MME. This manipulation causes denial of service. The attack can be initiated remotely. The exploit has been published...
CVE-2026-2523
- EPSS 0.07%
- Veröffentlicht 16.02.2026 00:02:07
- Zuletzt bearbeitet 18.02.2026 19:07:48
A vulnerability was detected in Open5GS up to 2.7.6. The affected element is the function smf_gn_handle_create_pdp_context_request of the file /src/smf/gn-handler.c of the component SMF. The manipulation results in reachable assertion. It is possible...
CVE-2026-2522
- EPSS 0.08%
- Veröffentlicht 15.02.2026 23:32:06
- Zuletzt bearbeitet 18.02.2026 19:42:15
A security vulnerability has been detected in Open5GS up to 2.7.6. Impacted is an unknown function of the file /src/mme/esm-build.c of the component MME. The manipulation leads to memory corruption. It is possible to initiate the attack remotely. The...
CVE-2026-2521
- EPSS 0.04%
- Veröffentlicht 15.02.2026 23:02:07
- Zuletzt bearbeitet 18.02.2026 19:42:51
A weakness has been identified in Open5GS up to 2.7.6. This issue affects the function sgwc_s5c_handle_create_session_response of the component SGW-C. Executing a manipulation can lead to memory corruption. The attack may be performed from remote. Th...
CVE-2026-2517
- EPSS 0.07%
- Veröffentlicht 15.02.2026 12:32:08
- Zuletzt bearbeitet 18.02.2026 20:48:40
A security flaw has been discovered in Open5GS up to 2.7.6. This vulnerability affects the function ogs_gtp2_parse_tft in the library lib/gtp/v2/types.c of the component SMF. Performing a manipulation of the argument pf[0].content.length results in d...
CVE-2026-2062
- EPSS 0.09%
- Veröffentlicht 06.02.2026 18:32:08
- Zuletzt bearbeitet 11.02.2026 19:02:06
A vulnerability was identified in Open5GS up to 2.7.6. This affects the function sgwc_s5c_handle_modify_bearer_response/sgwc_sxa_handle_session_modification_response of the component PGW S5U Address Handler. The manipulation leads to null pointer der...
CVE-2025-15555
- EPSS 0.03%
- Veröffentlicht 04.02.2026 20:32:07
- Zuletzt bearbeitet 11.02.2026 19:20:02
A security flaw has been discovered in Open5GS up to 2.7.6. Affected by this vulnerability is the function hss_ogs_diam_cx_mar_cb of the file src/hss/hss-cx-path.c of the component VoLTE Cx-Test. The manipulation of the argument OGS_KEY_LEN results i...
CVE-2026-1738
- EPSS 0.09%
- Veröffentlicht 02.02.2026 01:32:07
- Zuletzt bearbeitet 11.02.2026 19:34:54
A flaw has been found in Open5GS up to 2.7.6. The impacted element is the function sgwc_tunnel_add of the file /src/sgwc/context.c of the component SGWC. Executing a manipulation of the argument pdr can lead to reachable assertion. The attack can be ...
CVE-2026-1737
- EPSS 0.09%
- Veröffentlicht 02.02.2026 01:02:07
- Zuletzt bearbeitet 11.02.2026 19:34:45
A vulnerability was detected in Open5GS up to 2.7.6. The affected element is the function sgwc_s5c_handle_create_bearer_request of the file /src/sgwc/s5c-handler.c of the component CreateBearerRequest Handler. Performing a manipulation results in rea...
CVE-2026-1736
- EPSS 0.04%
- Veröffentlicht 02.02.2026 00:32:06
- Zuletzt bearbeitet 11.02.2026 19:34:35
A security vulnerability has been detected in Open5GS up to 2.7.6. Impacted is the function sgwc_s11_handle_create_indirect_data_forwarding_tunnel_request of the file /src/sgwc/s11-handler.c of the component SGWC. Such manipulation leads to reachable...