No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 07 Oct 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A weakness has been identified in Open5GS up to 2.7.7. This vulnerability affects the function ogs_pfcp_xact_local_create of the file src/upf/gtp-path.c of the component GTP-U Receive Path. This manipulation causes allocation of resources. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be used for attacks. Patch name: 9ffc252482d9b03ac01abcedbe95497ff4f95dd0. It is recommended to apply a patch to fix this issue. | |
| Title | Open5GS GTP-U Receive Path gtp-path.c ogs_pfcp_xact_local_create allocation of resources | |
| First Time appeared |
Open5gs
Open5gs open5gs |
|
| Weaknesses | CWE-400 CWE-770 |
|
| CPEs | cpe:2.3:a:open5gs:open5gs:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Open5gs
Open5gs open5gs |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-10-07T16:00:09.165Z
Reserved: 2026-10-07T11:26:59.363Z
Link: CVE-2026-107166
No data.
Status : Deferred
Published: 2026-10-07T16:17:44.870
Modified: 2026-10-07T16:17:45.053
Link: CVE-2026-107166
No data.
OpenCVE Enrichment
Updated: 2026-10-07T17:45:14Z