CVE-2026-1737

A vulnerability was detected in Open5GS up to 2.7.6. The affected element is the function sgwc_s5c_handle_create_bearer_request of the file /src/sgwc/s5c-handler.c of the component CreateBearerRequest Handler. Performing a manipulation results in reachable assertion. Remote exploitation of the attack is possible. The exploit is now public and may be used. To fix this issue, it is recommended to deploy a patch. The issue report is flagged as already-fixed.
References
Link Resource
https://github.com/open5gs/open5gs/ Product
https://github.com/open5gs/open5gs/issues/4271 Exploit Issue Tracking Vendor Advisory
https://github.com/open5gs/open5gs/issues/4271#event-21968630023 Issue Tracking
https://github.com/open5gs/open5gs/issues/4271#issue-3795147720 Exploit Issue Tracking Vendor Advisory
https://vuldb.com/?ctiid.343636 Permissions Required VDB Entry
https://vuldb.com/?id.343636 Third Party Advisory VDB Entry
https://vuldb.com/?submit.741192 Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

cpe:2.3:a:open5gs:open5gs:*:*:*:*:*:*:*:*

History

11 Feb 2026, 19:34

Type Values Removed Values Added
First Time Open5gs open5gs
Open5gs
CPE cpe:2.3:a:open5gs:open5gs:*:*:*:*:*:*:*:*
References () https://github.com/open5gs/open5gs/ - () https://github.com/open5gs/open5gs/ - Product
References () https://github.com/open5gs/open5gs/issues/4271 - () https://github.com/open5gs/open5gs/issues/4271 - Exploit, Issue Tracking, Vendor Advisory
References () https://github.com/open5gs/open5gs/issues/4271#event-21968630023 - () https://github.com/open5gs/open5gs/issues/4271#event-21968630023 - Issue Tracking
References () https://github.com/open5gs/open5gs/issues/4271#issue-3795147720 - () https://github.com/open5gs/open5gs/issues/4271#issue-3795147720 - Exploit, Issue Tracking, Vendor Advisory
References () https://vuldb.com/?ctiid.343636 - () https://vuldb.com/?ctiid.343636 - Permissions Required, VDB Entry
References () https://vuldb.com/?id.343636 - () https://vuldb.com/?id.343636 - Third Party Advisory, VDB Entry
References () https://vuldb.com/?submit.741192 - () https://vuldb.com/?submit.741192 - Third Party Advisory, VDB Entry

02 Feb 2026, 02:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-02 02:16

Updated : 2026-02-11 19:34


NVD link : CVE-2026-1737

Mitre link : CVE-2026-1737

CVE.ORG link : CVE-2026-1737


JSON object : View

Products Affected

open5gs

  • open5gs
CWE
CWE-617

Reachable Assertion