CVE-2026-4240
A vulnerability was determined in Open5GS up to 2.7.6. The affected element is the function smfgxccacb/smfgyccacb/smfs6baaacb/smfs6bstacb of the component CCA Handler. This manipulation causes denial of service. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized. Upgrading to version 2.7.7 is sufficient to fix this issue. Patch name: 80eb484a6ab32968e755e628b70d1a9c64f012ec. Upgrading the affected component is recommended.
Package Versions Affected
Automatically patch vulnerabilities without upgrading
CVSS Version



Related Resources
References
https://github.com/open5gs/open5gs/, https://github.com/open5gs/open5gs/releases/tag/v2.7.7, https://vuldb.com/?id.351182, https://github.com/open5gs/open5gs/issues/4343, https://github.com/open5gs/open5gs/issues/4343#issue-4021871895, https://vuldb.com/?ctiid.351182, https://github.com/open5gs/open5gs/commit/80eb484a6ab32968e755e628b70d1a9c64f012ec, https://vuldb.com/?submit.771361
