CVE-2026-75439: Free5gc Free5gc vulnerability
Published Sep 4, 2026
·Updated
An issue in Free5GC v.4.2.2 allows a remote attacker to cause a denial of service via the UPF component
Affected Software
2 affected components
free5gc Free5gc=4.2.2
Free5GC/UPF=4.2.2
Event History
Sep 4, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
Which deployments should be prioritized for review?
Free5GC deployments running version 4.2.2 that include the UPF component should be prioritized, because the reported denial-of-service condition is associated with that component.
2
What attacker access or prerequisites are documented?
The available information identifies the attacker as remote. It does not specify authentication requirements, network exposure conditions, or other prerequisites.