CVE-2026-15194: Open5GS AMF context.c amf_context_final use after free
Published Jul 9, 2026
·Updated
A security flaw has been discovered in Open5GS 2.7.7. This affects the function amfcontextfinal of the file src/amf/context.c of the component AMF. Performing a manipulation results in use after free. The attack is only possible with local access. The exploit has been released to the public and may be used for attacks.
Affected Software
1 affected component
open5gs Open5GS AMF=2.7.7
Event History
Jul 9, 2026
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-15194?
The severity of CVE-2026-15194 is classified as low with a score of 3.3.
2
How do I fix CVE-2026-15194?
To fix CVE-2026-15194, update Open5GS to the latest version that addresses this vulnerability.
3
What type of vulnerability is CVE-2026-15194?
CVE-2026-15194 is classified as a use after free vulnerability.
4
Who is affected by CVE-2026-15194?
CVE-2026-15194 affects users of Open5GS version 2.7.7 and below.
5
What are the attack conditions for CVE-2026-15194?
An attack exploiting CVE-2026-15194 requires local access to the system.