CVE-2026-108105
- EPSS -
- Veröffentlicht 09.10.2026 14:08:16
- Zuletzt bearbeitet 09.10.2026 18:17:06
Open5GS through 2.8.0 contains a reachable assertion vulnerability in mme_gn_handle_sgsn_context_request() that allows remote unauthenticated attackers to crash the MME via malformed SGSN Address IEs. Attackers sending GTPv1-C traffic from a configur...
CVE-2026-108103
- EPSS -
- Veröffentlicht 09.10.2026 14:08:13
- Zuletzt bearbeitet 09.10.2026 15:17:11
Open5GS through 2.8.0 contains a heap out-of-bounds read vulnerability in ogs_pfcp_parse_dropped_dl_traffic_threshold() that allows remote unauthenticated attackers to read past IE buffers via short IEs. Attackers can send PFCP Session Establishment ...
CVE-2026-108102
- EPSS -
- Veröffentlicht 09.10.2026 14:08:09
- Zuletzt bearbeitet 09.10.2026 15:17:10
Open5GS through 2.8.0 contains a heap out-of-bounds read vulnerability in ogs_pfcp_parse_volume_measurement() in lib/pfcp/types.c that allows remote unauthenticated attackers to read past IE buffers. Attackers can send a PFCP Session Report Request t...
CVE-2026-107166
- EPSS 0.55%
- Veröffentlicht 07.10.2026 16:00:09
- Zuletzt bearbeitet 07.10.2026 23:16:59
A weakness has been identified in Open5GS up to 2.7.7. This vulnerability affects the function ogs_pfcp_xact_local_create of the file src/upf/gtp-path.c of the component GTP-U Receive Path. This manipulation causes allocation of resources. The attack...
CVE-2026-92417
- EPSS 0.64%
- Veröffentlicht 16.09.2026 18:00:08
- Zuletzt bearbeitet 22.09.2026 16:18:11
A vulnerability was found in Open5GS up to 2.8.0. This affects the function ogs_pfcp_parse_volume_measurement in the library lib/pfcp/types.c of the component PFCP Handler. The manipulation results in null pointer dereference. The attack may be launc...
CVE-2026-92416
- EPSS 0.4%
- Veröffentlicht 16.09.2026 17:45:09
- Zuletzt bearbeitet 17.09.2026 17:17:49
A vulnerability has been found in Open5GS up to 2.8.0. Affected by this issue is the function smf_n4_handle_session_report_request of the file src/smf/n4-handler.c of the component PFCP Session Report Request Handler. The manipulation leads to reacha...
CVE-2026-91855
- EPSS 0.42%
- Veröffentlicht 15.09.2026 16:45:07
- Zuletzt bearbeitet 16.09.2026 13:42:49
A security flaw has been discovered in Open5GS up to 2.7.7. Affected by this vulnerability is an unknown functionality of the file lib/pfcp/handler.c of the component PFCP Message Handler. Performing a manipulation results in denial of service. Remot...
CVE-2026-90707
- EPSS 0.31%
- Veröffentlicht 14.09.2026 10:45:08
- Zuletzt bearbeitet 15.09.2026 14:17:32
A security flaw has been discovered in Open5GS up to 2.7.x. Affected is the function amf_nnrf_try_old_amf_discovery_fallback of the file src/amf/nnrf-handler.c of the component Old AMF Discovery Fallback. The manipulation of the argument discovery_op...
CVE-2026-86212
- EPSS 0.28%
- Veröffentlicht 06.09.2026 11:15:10
- Zuletzt bearbeitet 11.09.2026 21:17:37
A vulnerability has been found in Open5GS 2.7.7/2.8.0. This vulnerability affects unknown code of the component AMF/MME. The manipulation leads to improper authorization. The attack is possible to be carried out remotely. The exploit has been disclos...
CVE-2026-75438
- EPSS 0.28%
- Veröffentlicht 04.09.2026 00:00:00
- Zuletzt bearbeitet 09.09.2026 16:04:24
Buffer Overflow vulnerability in Open5GS v2.7.7 allows a remote attacker to cause a denial of service via the ogs_sbi_time_parse() function