CVE-2026-10565
Open5GS NGAP Handover gmm-sm.c gmm_state_security_mode race condition
Vexday Risk Score
28Bajo
Decisión SSVC (CISA)
Attend
PoC disponible → seguir de cerca
CVSS 2.3EPSS 0.2%KEV nãoPoC públicaNuclei —Metasploit —Patch referenciado
Ciclo de vida
02 jun 2026Publicada en NVD
Recomendación: Planificar corrección próxima — ya existe PoC pública.
A security flaw has been discovered in Open5GS up to 2.7.6. The impacted element is the function gmm_state_security_mode of the file src/amf/gmm-sm.c of the component NGAP Handover. Performing a manipulation results in race condition. The attack can be initiated remotely. The complexity of an attack is rather high. The exploitability is regarded as difficult. The exploit has been released to the public and may be used for attacks. The pull request to fix this issue awaits acceptance.
CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P
Productos afectados
n/a · Open5GSPoCs públicas encontradas — 1
cve_referencegithub.com/user-attachments/files/27111025/N2-SMC-Concurrent.zipno verificado⚠ Recursos públicos, para evaluar la exposición de sistemas que controlas o estás autorizado a probar. Prueba solo con autorización.
¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
https://github.com/open5gs/open5gs/https://github.com/open5gs/open5gs/issues/4497https://github.com/open5gs/open5gs/pull/4501https://github.com/user-attachments/files/27111025/N2-SMC-Concurrent.ziphttps://vuldb.com/cve/CVE-2026-10565https://vuldb.com/submit/818938https://vuldb.com/vuln/367672https://vuldb.com/vuln/367672/cti