CVE-2026-1737: Open5GS CreateBearerRequest s5c-handler.c sgwc_s5c_handle_create_bearer_request assertion
A vulnerability was detected in Open5GS up to 2.7.6. The affected element is the function sgwcs5chandlecreatebearerrequest of the file /src/sgwc/s5c-handler.c of the component CreateBearerRequest Handler. Performing a manipulation results in reachable assertion. Remote exploitation of the attack is possible. The exploit is now public and may be used. To fix this issue, it is recommended to deploy a patch. The issue report is flagged as already-fixed.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-1737?
CVE-2026-1737 is classified as a high severity vulnerability due to potential exploitation risks in Open5GS.
How do I fix CVE-2026-1737?
To fix CVE-2026-1737, upgrade Open5GS to version 2.7.7 or later where the vulnerability has been addressed.
What components of Open5GS are affected by CVE-2026-1737?
CVE-2026-1737 affects the CreateBearerRequest Handler, specifically in the sgwc_s5c_handle_create_bearer_request function.
What versions of Open5GS are vulnerable to CVE-2026-1737?
Open5GS versions up to and including 2.7.6 are vulnerable to CVE-2026-1737.
Is CVE-2026-1737 exploitable remotely?
Yes, CVE-2026-1737 can be exploited remotely if an attacker can send crafted requests to the vulnerable Open5GS instance.