Junglewise Threat Intelligence

CVE-2026-75438: Open5GS buffer overflow in time parsing

CVE-2026-75438 · Severity: high · CVSS 7.5 · Published 2026-09-04

Executive brief

Open5GS is a 5G core network implementation that processes telecommunications signaling and subscriber data. A buffer overflow in the time parsing function allows remote attackers to crash the service, disrupting network operations and causing denial of service for all users connected to the affected core.

Technical details

A buffer overflow vulnerability exists in the ogs_sbi_time_parse() function in Open5GS v2.7.7. The vulnerability is triggered via the SBI (Service Based Interface) protocol when processing malformed time values, specifically UE location timestamp fields. An unauthenticated remote attacker on the network can send crafted input to overflow a buffer, leading to process crash and denial of service. No remote code execution or authentication bypass is reported. Patch availability is not mentioned in the advisory.

Affected products

  • Open5GS Open5GS 2.7.7

Timeline

  • 2026-09-04: disclosed
  • 2026-09-02: other: exploit proof-of-concept published on GitHub

References

Related threats