Untriaged
Permalink
CVE-2026-1682
5.3 MEDIUM
- CVSS version (CVSS): 3.1
- Attack Vector (AV): Network (N)
- Attack Complexity (AC): Low (L)
- Privileges Required (PR): None (N)
- User Interaction (UI): None (N)
- Scope (S): Unchanged (U)
- Confidentiality (C): None (N)
- Integrity (I): None (N)
- Availability (A): Low (L)
- Exploit Code Maturity (E): Proof-of-Concept (P)
- Remediation Level (RL): Official Fix (O)
- Report Confidence (RC): Confirmed (C)
- Modified Attack Vector (MAV): Network (N)
- Modified Attack Complexity (MAC): Low (L)
- Modified Privileges Required (MPR): None (N)
- Modified User Interaction (MUI): None (N)
- Modified Confidentiality (MC): None (N)
- Modified Scope (MS): Unchanged (U)
- Modified Integrity (MI): None (N)
- Modified Availability (MA): Low (L)
Activity log
- Created suggestion
Free5GC SMF PFCP UDP Endpoint handler.go HandlePfcpAssociationReleaseRequest null pointer dereference
A flaw has been found in Free5GC SMF up to 4.1.0. Affected is the function HandlePfcpAssociationReleaseRequest of the file internal/pfcp/handler/handler.go of the component PFCP UDP Endpoint. Executing a manipulation can lead to null pointer dereference. The attack may be launched remotely. The exploit has been published and may be used. A patch should be applied to remediate this issue.
References
-
VDB-343475 | Free5GC SMF PFCP UDP Endpoint handler.go HandlePfcpAssociationReleaseRequest null pointer dereference vdb-entrytechnical-description
-
-
Submit #739508 | free5gc SMF v4.1.0 Denial of Service third-party-advisory
-
https://github.com/free5gc/free5gc/issues/794 issue-tracking
-
-
Affected products
SMF
- ==4.0
- ==4.1.0
Matching in nixpkgs
pkgs.smfh
Sleek Manifest File Handler
pkgs.asmfmt
Go assembler formatter
pkgs.libsmf
C library for reading and writing Standard MIDI Files
pkgs.nasmfmt
Formatter for NASM source files
-
nixos-unstable 2022-09-15
- nixpkgs-unstable 2022-09-15
- nixos-unstable-small 2022-09-15
pkgs.mt32emu-smf2wav
Produces a WAVE file from a Standard MIDI file (SMF)
-
nixos-unstable smf2wav-1.9.0
- nixpkgs-unstable smf2wav-1.9.0
- nixos-unstable-small smf2wav-1.9.0
pkgs.tests.fetchgit.rootDir
None
-
nixos-unstable qbp2smfq2pd7
- nixpkgs-unstable qbp2smfq2pd7
pkgs.python312Packages.pysmf
Python extension module for reading and writing Standard MIDI Files, based on libsmf
pkgs.python313Packages.pysmf
Python extension module for reading and writing Standard MIDI Files, based on libsmf
Package maintainers
-
@kalbasit Wael Nasreddine <wael.nasreddine@gmail.com>
-
@OPNA2608 Cosima Neidahl <opna2608@protonmail.com>
-
@Gerg-L Greg Leyda <gregleyda@proton.me>
-
@arthsmn Arthur Cerqueira