{"apiVersion":"1.0","identifier":"CVE-2026-78157","description":"A vulnerability was detected in Open5GS 2.8.0. This affects the function pcrf_rx_aar_cb of the file src/pcrf/pcrf-rx-path.c of the component Rx AA-Request Handler. Performing a manipulation results in out-of-bounds read. It is possible to initiate the attack remotely. The patch is named c18dc6938bf63cc7374315d3dca303d92066e746. To fix this issue, it is recommended to deploy a patch.","publishedAt":"2026-08-24T01:16:56","lastModifiedAt":"2026-08-24T18:17:25","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-78157","cvssScore":7.4,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L","epssProbability":0.00228,"riskScore":0.76,"affectedProduct":"Open5GS","affectedVersions":"==2.8.0","vulnerabilityType":"Library","operatingSystems":[],"links":{"self":"https://www.redsauce.net/api/cves/CVE-2026-78157","webPages":{"es":"https://www.redsauce.net/es/cves/CVE-2026-78157","en":"https://www.redsauce.net/en/cves/CVE-2026-78157","fr":"https://www.redsauce.net/fr/cves/CVE-2026-78157","pt":"https://www.redsauce.net/pt/cves/CVE-2026-78157","de":"https://www.redsauce.net/de/cves/CVE-2026-78157","sk":"https://www.redsauce.net/sk/cves/CVE-2026-78157","el":"https://www.redsauce.net/el/cves/CVE-2026-78157"},"source":"https://nvd.nist.gov/vuln/detail/CVE-2026-78157"}}