CVE-2026-8120: Open5GS NSSF nnssf-handler.c denial of service
A flaw has been found in Open5GS up to 2.7.7. The affected element is the function nssfnnrfnsselectionhandlegetfromamforvnssf of the file /src/nssf/nnssf-handler.c of the component NSSF. Executing a manipulation can lead to denial of service. The attack can be executed remotely. The exploit has been published and may be used. The project was informed of the problem early through an issue report but has not responded yet.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-8120?
The severity of CVE-2026-8120 is classified as a denial of service vulnerability.
How do I fix CVE-2026-8120?
To fix CVE-2026-8120, upgrade Open5GS to version 2.7.8 or later, which contains the necessary patches.
What component is affected by CVE-2026-8120?
CVE-2026-8120 affects the NSSF component of Open5GS.
Which versions of Open5GS are vulnerable to CVE-2026-8120?
Open5GS versions up to and including 2.7.7 are vulnerable to CVE-2026-8120.
What kind of attack is enabled by CVE-2026-8120?
CVE-2026-8120 enables a denial of service attack that can disrupt the functionality of the NSSF component.