CVE-2026-71676: Buffer Overflow
Published Aug 18, 2026
·Updated
Buffer Overflow vulnerability in Open5GS v.2.7.0 allows a remote attacker to cause a denial of service via the NAS 5GS decoder chain, triggered when the message type byte of a NAS PDU is mutated
Affected Software
1 affected component
open5gs open5gs=2.7.0
Event History
Aug 18, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
Which deployments are exposed?
Open5GS v.2.7.0 is identified as affected. The issue is reachable remotely through the NAS 5GS decoder chain.
2
What does an attacker need to do to trigger the issue?
An attacker needs to send a NAS PDU with a mutated message type byte that reaches the NAS 5GS decoder chain. The reported impact is denial of service.