Description
A security vulnerability has been detected in Open5GS up to 2.7.6. Impacted is the function sgwc_s11_handle_create_indirect_data_forwarding_tunnel_request of the file /src/sgwc/s11-handler.c of the component SGWC. Such manipulation leads to reachable assertion. The attack may be launched remotely. The exploit has been disclosed publicly and may be used. A patch should be applied to remediate this issue. The issue report is flagged as already-fixed.
Problem types
Timeline
| 2026-02-01: | Advisory disclosed |
| 2026-02-01: | VulDB entry created |
| 2026-02-01: | VulDB entry last update |
Credits
LinZiyu (VulDB User)
References
vuldb.com/?id.343635 (VDB-343635 | Open5GS SGWC s11-handler.c assertion)
vuldb.com/?ctiid.343635 (VDB-343635 | CTI Indicators (IOB, IOC, IOA))
vuldb.com/?submit.741191 (Submit #741191 | Open5GS SGWC v2.7.6 Denial of Service)
github.com/open5gs/open5gs/issues/4270
github.com/open5gs/open5gs/issues/4270
github.com/open5gs/open5gs/issues/4270
github.com/open5gs/open5gs/