CVE-2026-75892 PUBLISHED

Out of bounds write in PDP ctx GSN-Address decode

Assigner: redhat-cnalr
Reserved: 18.08.2026 Published: 18.09.2026 Updated: 18.09.2026

In osmo-ggsn 1.14.0 an out of bounds write issue was found in the gtp_decode_pdp_ctx() function through the PDP context GSN-Address sub-field, leading to memory corruption.

Product Status

Vendor Osmocom
Product osmo-ggsn
Versions Default: unknown
  • Version 1.14.0 is affected

Credits

  • Nikolas Null "n0k0" - Security Researcher at mnemonic finder

References

Problem Types

  • CWE-787 Out-of-bounds write CWE