CVE-2026-4531 PUBLISHED

Free5GC AMF handler.go HandleRegistrationComplete denial of service

Assigner: VulDB
Reserved: 21.03.2026 Published: 22.03.2026 Updated: 22.03.2026

A weakness has been identified in Free5GC 4.1.0. Affected is the function HandleRegistrationComplete of the file internal/gmm/handler.go of the component AMF. Executing a manipulation can lead to denial of service. The attack may be performed from remote. This patch is called 52e9386401ce56ea773c5aa587d4cdf7d53da799. It is best practice to apply a patch to resolve this issue.

Metrics

CVSS Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X
CVSS Score: 6.9

Product Status

Vendor n/a
Product Free5GC
Versions
  • Version 4.1.0 is affected

Credits

  • shovon0203 (VulDB User) reporter

References

Problem Types

  • Denial of Service CWE