Vulnerability Description
A vulnerability was found in Open5GS up to 2.8.0. This affects the function ogs_pfcp_parse_volume_measurement in the library lib/pfcp/types.c of the component PFCP Handler. The manipulation results in null pointer dereference. The attack may be launched remotely. The patch is identified as 8f07b507b78ff94776f2cd49276eb116ed93d7f2. A patch should be applied to remediate this issue.
CVSS Score
MEDIUM
Related Weaknesses (CWE)
References
- https://github.com/open5gs/open5gs/
- https://github.com/open5gs/open5gs/commit/8f07b507b78ff94776f2cd49276eb116ed93d7
- https://github.com/open5gs/open5gs/issues/4745
- https://vuldb.com/cve/CVE-2026-92417
- https://vuldb.com/submit/940465
- https://vuldb.com/vuln/405595
- https://vuldb.com/vuln/405595/cti
FAQ
What is CVE-2026-92417?
CVE-2026-92417 is a vulnerability with a CVSS score of 6.5 (MEDIUM). A vulnerability was found in Open5GS up to 2.8.0. This affects the function ogs_pfcp_parse_volume_measurement in the library lib/pfcp/types.c of the component PFCP Handler. The manipulation results in...
How severe is CVE-2026-92417?
CVE-2026-92417 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-92417?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.