CVE-2026-108102: OPEN5GS

Medium severity, CVSS 5.3. EPSS: 0.4% chance of exploitation in the next 30 days.

Open5GS through 2.8.0 contains a heap out-of-bounds read vulnerability in ogs_pfcp_parse_volume_measurement() in lib/pfcp/types.c that allows remote unauthenticated attackers to read past IE buffers. Attackers can send a PFCP Session Report Request to the SMF on UDP port 8805 with a short, all-flags Volume Measurement IE, reading up to 48 bytes and potentially crashing the SMF.

Affected products

  • OPEN5GS OPEN5GS: up to and including 2.8.0

Published 2026-10-09. Last modified 2026-10-09.