CVE-2026-10115: Open5GS Shared NF-profile nnrf-handler.c denial of service
A vulnerability was identified in Open5GS up to 2.7.7. This affects an unknown part in the library lib/sbi/nnrf-handler.c of the component Shared NF-profile Parser. Such manipulation leads to denial of service. The attack can be launched remotely. The exploit is publicly available and might be used. It is advisable to implement a patch to correct this issue.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Open5GSto a version that resolves this vulnerability.Fixed in 2.7.7
Event History
Frequently Asked Questions
What is the severity of CVE-2026-10115?
The severity of CVE-2026-10115 is rated as medium with a score of 4.3.
How do I fix CVE-2026-10115?
To fix CVE-2026-10115, update Open5GS to the latest version that addresses this vulnerability.
What impact does CVE-2026-10115 have on systems?
CVE-2026-10115 can cause a denial of service, leading to potential downtime for affected systems.
Is CVE-2026-10115 exploitable remotely?
Yes, CVE-2026-10115 can be exploited remotely, allowing attackers to launch denial of service attacks.
Which component of Open5GS is affected by CVE-2026-10115?
CVE-2026-10115 affects the Shared NF-profile Parser in the lib/sbi/nnrf-handler.c library of Open5GS.