CVE-2026-108105: OPEN5GS

Medium severity, CVSS 5.9. EPSS: 0.5% chance of exploitation in the next 30 days.

Open5GS through 2.8.0 contains a reachable assertion vulnerability in mme_gn_handle_sgsn_context_request() that allows remote unauthenticated attackers to crash the MME via malformed SGSN Address IEs. Attackers sending GTPv1-C traffic from a configured SGSN address with a known UE IMSI or P-TMSI can supply an invalid address length to terminate open5gs-mmed, denying service to all subscribers.

Affected products

  • OPEN5GS OPEN5GS: up to and including 2.8.0

Published 2026-10-09. Last modified 2026-10-09.