CVE-2026-8269: Open5GS SMF smf_nsmf_handle_create_sm_context denial of service
A vulnerability was found in Open5GS up to 2.7.7. Impacted is the function smfnsmfhandlecreatesmcontext of the component SMF. Performing a manipulation results in denial of service. Remote exploitation of the attack is possible. The exploit has been made public and could be used. The project was informed of the problem early through an issue report but has not responded yet.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-8269?
The severity of CVE-2026-8269 is classified as a denial of service vulnerability affecting Open5GS SMF up to version 2.7.7.
How do I fix CVE-2026-8269?
To fix CVE-2026-8269, upgrade Open5GS SMF to version 2.7.8 or later.
What component is affected by CVE-2026-8269?
CVE-2026-8269 affects the SMF component of Open5GS.
Can CVE-2026-8269 be exploited remotely?
Yes, CVE-2026-8269 allows for remote exploitation, leading to a denial of service.
What versions of Open5GS are vulnerable to CVE-2026-8269?
Open5GS versions up to and including 2.7.7 are vulnerable to CVE-2026-8269.