CVE-2026-30059: Free5gc NAS decoder component vulnerability
Published Aug 27, 2026
·Updated
An issue in the NAS decoder component of free5gc v4.0.1 allows attackers to cause a Denial of Service (DoS) via a crafted Registration Request message.
Affected Software
1 affected component
free5gc NAS decoder component=4.0.1
Event History
Aug 27, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:17 PM
Description
Frequently Asked Questions
1
Which deployment is explicitly identified as affected?
The issue is reported in free5gc v4.0.1, specifically in its NAS decoder component. No other versions are identified in the available information.
2
What does an attacker need to send to trigger the issue?
An attacker needs to provide a crafted Registration Request message to the affected NAS decoder. The reported impact is denial of service.