GHSA-65jg-mq47-hgxfLowCVSS 7.4
A vulnerability was detected in Open5GS 2.8.0. This affects the function pcrf_rx_aar_cb of the...
🔗 CVE IDs covered (1)
📋 Description
A vulnerability was detected in Open5GS 2.8.0. This affects the function pcrf_rx_aar_cb of the file src/pcrf/pcrf-rx-path.c of the component Rx AA-Request Handler. Performing a manipulation results in out-of-bounds read. It is possible to initiate the attack remotely. The patch is named c18dc6938bf63cc7374315d3dca303d92066e746. To fix this issue, it is recommended to deploy a patch.
🔗 References (9)
- https://nvd.nist.gov/vuln/detail/CVE-2026-78157
- https://github.com/open5gs/open5gs/issues/4663
- https://github.com/open5gs/open5gs/commit/c18dc6938bf63cc7374315d3dca303d92066e746
- https://github.com/open5gs/open5gs
- https://vuldb.com/cve/CVE-2026-78157
- https://vuldb.com/submit/882953
- https://vuldb.com/vuln/394540
- https://vuldb.com/vuln/394540/cti
- https://github.com/advisories/GHSA-65jg-mq47-hgxf