CVE-2026-1974 – Free5GC SMF datapath.go ResolveNodeIdToIp denial of service
CVE ID : CVE-2026-1974
Published : Feb. 6, 2026, 2:16 a.m. | 1 hour, 3 minutes ago
Description : A vulnerability was identified in Free5GC up to 4.1.0. This affects the function ResolveNodeIdToIp of the file internal/sbi/processor/datapath.go of the component SMF. The manipulation leads to denial of service. Remote exploitation of the attack is possible. The exploit is publicly available and might be used. It is recommended to apply a patch to fix this issue.
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more…