A vulnerability was detected in Open5GS 2.8.0. This affects the function pcrf_rx_aar_cb of the file src/pcrf/pcrf-rx-path.c of the component Rx AA-Request Handler. Performing a manipulation results i…
高危 CVSS 7.4
摘要
A vulnerability was detected in Open5GS 2.8.0. This affects the function pcrf_rx_aar_cb of the file src/pcrf/pcrf-rx-path.c of the component Rx AA-Request Handler. Performing a manipulation results in out-of-bounds read. It is possible to initiate the attack remotely. The patch is named c18dc6938bf63cc7374315d3dca303d92066e746. To fix this issue, it is recommended to deploy a patch.
中文摘要建设中,暂以英文摘要呈现(DR-003 v2)。
深度研判
该漏洞尚未生成深度研判报告(DR-003 v2 AI pipeline 建设中)。
数据来源
- NVD DATABASE
原始链接
- https://github.com/open5gs/open5gs/
- https://github.com/open5gs/open5gs/commit/c18dc6938bf63cc7374315d3dca303d92066e746
- https://github.com/open5gs/open5gs/issues/4663
- https://vuldb.com/cve/CVE-2026-78157
- https://vuldb.com/submit/882953
- https://vuldb.com/vuln/394540
- https://vuldb.com/vuln/394540/cti
时间线
- nvd_ingest NVD