CVE-2026-10156

A vulnerability was determined in Open5GS up to 2.7.7. This affects the function handle_amf_info in the library /lib/sbi/nnrf-handler.c of the component nf-instances Endpoint. Executing a manipulation of the argument nf_info_pool can lead to resource consumption. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized. Applying a patch is advised to resolve this issue. The issue report is flagged as already-fixed.
Configurations

No configuration.

History

22 Jul 2026, 07:10

Type Values Removed Values Added
Summary
  • (es) Se determinó una vulnerabilidad en Open5GS hasta 2.7.7. Esto afecta a la función handle_amf_info en la biblioteca /lib/sbi/nnrf-handler.c del componente nf-instances Endpoint. Ejecutar una manipulación del argumento nf_info_pool puede llevar a un consumo de recursos. El ataque puede realizarse desde remoto. El exploit ha sido divulgado públicamente y puede utilizarse. Se aconseja aplicar un parche para resolver este problema. El informe del problema está marcado como ya solucionado.

31 May 2026, 00:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-31 00:16

Updated : 2026-07-22 07:10


NVD link : CVE-2026-10156

Mitre link : CVE-2026-10156

CVE.ORG link : CVE-2026-10156


JSON object : View

Products Affected

No product.

CWE
CWE-400

Uncontrolled Resource Consumption

CWE-404

Improper Resource Shutdown or Release