CVE-2026-1682 | Free5GC SMF up to 4.1.0 PFCP UDP Endpoint handler.go HandlePfcpAssociationReleaseRequest null pointer dereference (Issue 794)
A vulnerability described as problematic has been identified in Free5GC SMF up to 4.1.0. Affected is the function HandlePfcpAssociationReleaseRequest of the file internal/pfcp/handler/handler.go of the component PFCP UDP Endpoint. Executing a manipulation can lead to null pointer dereference.
The identification of this vulnerability is CVE-2026-1682. The attack may be launched remotely. Furthermore, there is an exploit available.
A patch should be applied to remediate this issue.