PT-2026-8294 · Open5Gs · Open5Gs

Linziyu

·

Published

2026-02-16

·

Updated

2026-02-16

·

CVE-2026-2523

CVSS v3.1
5.3
VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions Open5GS versions prior to 2.7.7
Description An issue exists in Open5GS up to version 2.7.6 related to the
smf gn handle create pdp context request
function within the SMF component, specifically in the file /src/smf/gn-handler.c. The manipulation of this function results in a reachable assertion. The attack can be launched remotely. The exploit is publicly available.
Recommendations Update Open5GS to version 2.7.7 or later. As a temporary workaround, consider restricting access to the
smf gn handle create pdp context request
function until a patch is available.

Exploit

Fix

Assertion Failure

Weakness Enumeration

Related Identifiers

CVE-2026-2523

Affected Products

Open5Gs