Description
A vulnerability was detected in Open5GS up to 2.7.6. The affected element is the function sgwc_s5c_handle_create_bearer_request of the file /src/sgwc/s5c-handler.c of the component CreateBearerRequest Handler. Performing a manipulation results in reachable assertion. Remote exploitation of the attack is possible. The exploit is now public and may be used. To fix this issue, it is recommended to deploy a patch. The issue report is flagged as already-fixed.
Problem types
Timeline
| 2026-02-01: | Advisory disclosed |
| 2026-02-01: | VulDB entry created |
| 2026-02-01: | VulDB entry last update |
Credits
LinZiyu (VulDB User)
References
vuldb.com/?id.343636 (VDB-343636 | Open5GS CreateBearerRequest s5c-handler.c sgwc_s5c_handle_create_bearer_request assertion)
vuldb.com/?ctiid.343636 (VDB-343636 | CTI Indicators (IOB, IOC, IOA))
vuldb.com/?submit.741192 (Submit #741192 | Open5GS SGWC v2.7.6 Denial of Service)
github.com/open5gs/open5gs/issues/4271
github.com/open5gs/open5gs/issues/4271
github.com/open5gs/open5gs/issues/4271
github.com/open5gs/open5gs/