PT-2026-39452 · Open5Gs · Open5Gs

Linziyu

·

Published

2026-05-10

·

Updated

2026-05-10

·

CVE-2026-8226

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions Open5GS versions prior to 2.7.8
Description A remote flaw in the ogs pcc rule install flow from media() function within the /lib/proto/types.c library allows for denial of service through flow manipulation.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability. As a temporary workaround, consider restricting access to the ogs pcc rule install flow from media() function to minimize the risk of exploitation.

Exploit

DoS

Improper Resource Release

Weakness Enumeration

Related Identifiers

CVE-2026-8226

Affected Products

Open5Gs