Ghostwire

CVE-2026-78157: A vulnerability was detected in Open5GS 2.8.0. This affects the function pcrf_rx_aar_cb of the file...

HIGH CVSS 7.4 Exploit Available

Published: August 24, 2026 | Last Modified: August 24, 2026

Description

A vulnerability was detected in Open5GS 2.8.0. This affects the function pcrf_rx_aar_cb of the file src/pcrf/pcrf-rx-path.c of the component Rx AA-Request Handler. Performing a manipulation results in out-of-bounds read. It is possible to initiate the attack remotely. The patch is named c18dc6938bf63cc7374315d3dca303d92066e746. To fix this issue, it is recommended to deploy a patch.

Ghostwire Analysis — What This Means Practically

This analysis is generated by Ghostwire from NVD, CISA KEV, EPSS, and open-source intelligence data. Verify findings through primary sources before acting.

References