CVE-2026-75892: Osmocom Osmo-Ggsn

Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.

In osmo-ggsn 1.14.0 an out of bounds write issue was found in the gtp_decode_pdp_ctx() function through the PDP context GSN-Address sub-field, leading to memory corruption.

Affected products

  • Osmocom Osmo-Ggsn: version 1.14.0 only

Published 2026-09-18. Last modified 2026-09-21.