MEDIUM 5.3 Go
Free5GC AMF is vulnerable to DoS through its HandleRegistrationComplete function
GHSA-xq44-64rg-8g3h · CVE-2026-4531
Published · Modified
Description
A weakness has been identified in Free5GC 4.1.0. Affected is the function HandleRegistrationComplete of the file internal/gmm/handler.go of the component AMF. Executing a manipulation can lead to denial of service. The attack may be performed from remote. This patch is called 52e9386401ce56ea773c5aa587d4cdf7d53da799. It is best practice to apply a patch to resolve this issue.
References
- ADVISORY https://nvd.nist.gov/vuln/detail/CVE-2026-4531
- WEB https://github.com/free5gc/free5gc/issues/792
- WEB https://github.com/free5gc/amf/pull/198
- WEB https://github.com/free5gc/amf/commit/52e9386401ce56ea773c5aa587d4cdf7d53da799
- PACKAGE https://github.com/free5gc/amf
- WEB https://vuldb.com/?ctiid.352319
- WEB https://vuldb.com/?id.352319
- WEB https://vuldb.com/?submit.774073
Ready to move
Start Securing
Free, no credit card | First findings in minutes