A AegiFlow
MEDIUMCVSS 6.9EPSS 0.4%

CVE-2026-53551

CVE-2026-53551 updated by NVD

Published
2026-07-31
Modified
2026-09-10
EPSS percentile
35%
Sources
github-advisory, nvd

Summary

free5GC is an open-source implementation of the 5G core network. Prior to 1.4.5, the free5GC AUSF (Authentication Server Function) does not validate the supiOrSuci field in UE authentication requests. Null bytes (\x00) and other control characters pass through JSON parsing unchanged and are forwarded to the UDM in an unescaped URL path. This causes Go's net/url.Parse() to fail, returning HTTP 500 "System failure" and leaking internal stack traces. An unauthenticated attacker can trigger this at scale causing denial of service for all subscribers attempting authentication through the affected AUSF. This vulnerability is fixed in 1.4.5.

Affected packages

EcosystemPackageAffected versionsFixed versions
Gogithub.com/free5gc/ausf1.4.5
Gogithub.com/free5gc/free5gc4.2.2

Remediation: Upgrade to 1.4.5 or later.

References

Includes data from the GitHub Advisory Database, licensed under CC-BY 4.0.

Includes data from the National Vulnerability Database (NIST). NVD data is in the public domain; this page is not endorsed by NIST.

CVE® is a registered trademark of The MITRE Corporation. CVE content reproduced under the CVE Terms of Use; copyright designation © MITRE.

EPSS scores provided by the FIRST.org Exploit Prediction Scoring System.