SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-37198

HIGH · CVSS 7.5 EPSS 0.45% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-08-27 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

Open5GS v2.7.6 is vulnerable to an integer overflow in its SMF component, which can be exploited by attackers sending specially crafted GTP packets. This vulnerability can lead to a Denial of Service (DoS), disrupting the availability of services relying on this software. Organizations utilizing Open5GS should prioritize patching or mitigating this issue to maintain service integrity and availability.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-37198
Severity
HIGH
CVSS
7.5
EPSS
0.45%

Original NVD Description

An integer overflow in the SMF component of Open5GS v2.7.6 allows attackers to cause a Denial of Service (DoS) via supplying a crafted GTP packet.