CVE-2026-2523
A vulnerability was detected in Open5GS up to 2.7.6. The affected element is the function smfgnhandlecreatepdpcontextrequest of the file /src/smf/gn-handler.c of the component SMF. The manipulation results in reachable assertion. It is possible to launch the attack remotely. The exploit is now public and may be used. The project was informed of the problem early through an issue report but has not responded yet.
Package Versions Affected
Automatically patch vulnerabilities without upgrading
CVSS Version



Related Resources
References
https://github.com/open5gs/open5gs/, https://vuldb.com/?id.346111, https://vuldb.com/?submit.738342, https://github.com/open5gs/open5gs/issues/4285, https://github.com/open5gs/open5gs/issues/4285#issue-3809055236, https://vuldb.com/?ctiid.346111
