CVE-2026-1975Disclosure(free5gc / free5gc)

LOWCVSS 7.5 · HIGH

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A security flaw has been discovered in Free5GC up to 4.1.0. This impacts the function identityTriggerType of the file pfcp_reports.go. The manipulation results in null pointer dereference. The attack can be executed remotely. The exploit has been released to the public and may be used for attacks. Applying a patch is advised to resolve this issue.

0.0/ 10 priority

Sources & remediation

Vendor / third-party advisories
Weakness type (CWE)
CWE-404CWE-476

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • free5gc

Threat summary

  • 2 mentions across 1 observed day

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • 2 total mentions across 1 day

Affected systems

Vendors
Products
free5gc

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-02-06: 2Technical Details · 2026-02-06: 202-06
Signal classification1 categories
Disclosure
2100.0%
Referenced assets3 URLs
Full discourse2 posts
  • CVE@CVEnew
    Disclosure

    CVE-2026-1975 A security flaw has been discovered in Free5GC up to 4.1.0. This impacts the function identityTriggerType of the file pfcp_reports.go. The manipulation results in null … https://www.cve.org/CVERecord?id=CVE-2026-1975

    Post summary

    CVE-2026-1975 is a discovered flaw in Free5GC up to 4.1.0 that affects the identityTriggerType function in pfcp_reports.go, causing null manipulation; no PoC, exploitation, or patch information is provided.

    00010247
    56.5K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-1975 Null Pointer Dereference Vulnerability in Free5GC Up to 4.1.0 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-1975 Vulnerability Notification: https://alerts.vulmon.com/?utm_source=twitter&utm_medium=social&utm_campaign=2102281&utm_content=3

    Post summary

    A notification for CVE-2026-1975, a null pointer dereference affecting Free5GC up to v4.1.0, has been posted via Vulmon, but no exploit, patch or additional technical details are included.

    0000052
    4.0K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appfree5gcfree5gc---

Explore more