Description
An issue in Free5GC v.4.2.2 allows a remote attacker to cause a denial of service via the UPF component
Published: 2026-09-04
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service
Action: Assess Impact
AI Analysis

Impact

An issue in Free5GC version 4.2.2 allows a remote attacker to cause a denial of service through the UPF component. The flaw permits traffic that can trigger failures in the UPF, rendering the user plane component unresponsive and disrupting service.

Affected Systems

Free5GC version 4.2.2, specifically its User Plane Function (UPF) component. No other vendor or product variations are reported.

Risk and Exploitability

The CVSS base score of 7.5 indicates a high-severity vulnerability, and the EPSS score of less than 1% suggests a low current exploitation probability. The flaw is not listed in the CISA KEV catalog. Because the vulnerability is remote, an attacker with network access to the UPF can potentially disrupt the user plane traffic of the affected Free5GC deployment.

Generated by OpenCVE AI on September 21, 2026 at 07:39 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade Free5GC to a release that includes the patch from the referenced pull request or relies on the latest stable release.
  • Restrict external access to the UPF component by applying firewall rules to allow only trusted IP ranges.
  • Monitor UPF logs and performance metrics for abnormal traffic patterns or repeated service failures, and configure alerts to detect potential denial‑of‑service events.

Generated by OpenCVE AI on September 21, 2026 at 07:39 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 21 Sep 2026 08:00:00 +0000

Type Values Removed Values Added
Title Denial of Service via Null Pointer Dereference in Free5GC UPF

Mon, 21 Sep 2026 06:30:00 +0000

Type Values Removed Values Added
Title Remote Denial of Service in Free5GC UPF Component
Weaknesses CWE-400

Mon, 14 Sep 2026 14:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-476
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Sat, 05 Sep 2026 02:30:00 +0000

Type Values Removed Values Added
First Time appeared Free5gc
Free5gc upf
Vendors & Products Free5gc
Free5gc upf

Fri, 04 Sep 2026 22:15:00 +0000

Type Values Removed Values Added
Title Remote Denial of Service in Free5GC UPF Component
Weaknesses CWE-400

Fri, 04 Sep 2026 20:30:00 +0000


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-09-14T13:10:36.418Z

Reserved: 2026-08-17T00:00:00.000Z

Link: CVE-2026-75439

cve-icon Vulnrichment

Updated: 2026-09-14T13:10:20.268Z

cve-icon NVD

Status : Deferred

Published: 2026-09-04T21:17:25.583

Modified: 2026-09-14T14:17:09.723

Link: CVE-2026-75439

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-21T07:45:11Z

Weaknesses