A vulnerability was detected in Open5GS up to 2.7.7. This affects the function ogs_sbi_client_send_via_scp_or_sepp in the library lib/sbi/client.c of the component NF. Performing a manipulation results in out-of-bounds read. The attack is possible to be carried out remotely. The patch is named d5bc487fcf9ea87d2b03f2ef95123af344773bfb. It is suggested to install a patch to address this issue.
Metrics
Affected Vendors & Products
References
History
Sat, 09 May 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was detected in Open5GS up to 2.7.7. This affects the function ogs_sbi_client_send_via_scp_or_sepp in the library lib/sbi/client.c of the component NF. Performing a manipulation results in out-of-bounds read. The attack is possible to be carried out remotely. The patch is named d5bc487fcf9ea87d2b03f2ef95123af344773bfb. It is suggested to install a patch to address this issue. | |
| Title | Open5GS NF client.c ogs_sbi_client_send_via_scp_or_sepp out-of-bounds | |
| First Time appeared |
Open5gs
Open5gs open5gs |
|
| Weaknesses | CWE-119 CWE-125 |
|
| CPEs | cpe:2.3:a:open5gs:open5gs:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Open5gs
Open5gs open5gs |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-05-09T12:00:15.995Z
Reserved: 2026-05-08T19:47:06.554Z
Link: CVE-2026-8186
No data.
Status : Received
Published: 2026-05-09T12:16:08.760
Modified: 2026-05-09T12:16:08.760
Link: CVE-2026-8186
No data.
OpenCVE Enrichment
No data.