PT-2026-5403 · Free5Gc · Free5Gc Smf

·

CVE-2026-1684

·

Published

2026-01-30

·

Updated

2026-02-23

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Free5GC SMF versions prior to 4.1.0
Description A flaw exists within the PFCP UDP Endpoint component of Free5GC SMF. Specifically, the HandleReports function within the /internal/context/pfcp reports.go file is susceptible to manipulation, leading to a denial of service. This issue can be exploited remotely.
Recommendations Apply a patch to correct this issue in versions prior to 4.1.0.

Exploit

Fix

DoS

Improper Resource Release

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-1684

Affected Products

Free5Gc Smf