CVE-2026-30062: Free5gc Free5gc vulnerability
Published Aug 27, 2026
·Updated
An issue in the NGAP handler of free5gc v4.0.1 allows attackers to cause a Denial of Service (DoS) via a crafted NAS PDU.
Affected Software
1 affected component
free5gc Free5gc=4.0.1
Event History
Aug 27, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:17 PM
Description
Frequently Asked Questions
1
Who can exploit this issue?
An attacker able to send a crafted NAS PDU to the free5gc NGAP handler can trigger the denial of service. The available information does not specify whether authentication, network proximity, or other access prerequisites are required.
2
Which deployment versions are identified as affected?
The issue is reported in free5gc version 4.0.1. No fixed version, workaround, or configuration-based mitigation is provided in the available information.