---
id: CVE-2026-8266
title: A vulnerability was detected in Open5GS up to 2.7.7
summary: >-
  A vulnerability was detected in Open5GS up to 2.7.7. This affects the function
  gsm_build_pdu_session_establishment_accept of the file /src/smf/gsm-build.c of
  the component SMF. The manipulation results in denial of service. The attack
  ca…
severity: medium
cvss: 4.3
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L'
cwe:
  - CWE-404
vendor: open5gs
product: open5gs
affected:
  - open5gs <= 2.7.7
published: '2026-05-11'
updated: '2026-07-23'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-8266'
references:
  - url: 'https://github.com/open5gs/open5gs/'
    label: cna@vuldb.com
  - url: 'https://github.com/open5gs/open5gs/issues/4447'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/submit/808483'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/362563'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/362563/cti'
    label: cna@vuldb.com
tags:
  - nvd
epss: 0.00461
epssPercentile: 0.39265
ingestedAt: '2026-07-23T20:19:18.556Z'
---

## Overview

A vulnerability was detected in Open5GS up to 2.7.7. This affects the function gsm_build_pdu_session_establishment_accept of the file /src/smf/gsm-build.c of the component SMF. The manipulation results in denial of service. The attack can be launched remotely. The exploit is now public and may be used. The project was informed of the problem early through an issue report but has not responded yet.

## Affected

- `open5gs <= 2.7.7`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
