Back

MEDIUM

Open5GS AMF namf-handler.c amf_namf_comm_decode_ue_mm_context_list memory corruption

Published Aug 30, 2026

Description

A vulnerability was determined in Open5GS up to 2.7.7. This vulnerability affects the function amf_namf_comm_decode_ue_mm_context_list of the file src/amf/namf-handler.c of the component AMF. This manipulation of the argument ueContext.mmContextList[*].allowedNssai causes memory corruption. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized. Upgrading to version 2.8.0 is able to resolve this issue. Patch name: abf8a836564b966b5141110fc25ed413c4f17522. It is recommended to upgrade the affected component.

Affected products

Remediation

No remediation recorded yet.

Metrics

References (8)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner VulDB
Published Aug 30, 2026
Updated Aug 31, 2026
Reserved Aug 30, 2026
CISA Vulnrichment
Updated Aug 31, 2026
NVD
Status Deferred
Modified Aug 31, 2026
Red Hat
Severity n/a
Public date n/a