Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 24 Aug 2026 04:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw has been found in Open5GS up to 2.8.0. This affects an unknown function of the file src/hss/hss-cx-path.c of the component HSS. This manipulation of the argument User-Name causes reachable assertion. The attack is possible to be carried out remotely. The exploit has been published and may be used. Patch name: c9abe09421eb99bbf1cd7862a3d375e58a4eb9e4. It is recommended to apply a patch to fix this issue. | |
| Title | Open5GS HSS hss-cx-path.c assertion | |
| First Time appeared |
Open5gs
Open5gs open5gs |
|
| Weaknesses | CWE-617 | |
| CPEs | cpe:2.3:a:open5gs:open5gs:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Open5gs
Open5gs open5gs |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-08-24T04:15:08.586Z
Reserved: 2026-08-23T16:44:41.636Z
Link: CVE-2026-78186
No data.
Status : Received
Published: 2026-08-24T05:16:55.277
Modified: 2026-08-24T05:16:55.277
Link: CVE-2026-78186
No data.
OpenCVE Enrichment
Updated: 2026-08-24T08:00:13Z