CVE-2026-1974 | Free5GC up to 4.1.0 SMF datapath.go ResolveNodeIdToIp denial of service (Issue 816 / EUVD-2026-5604)
A vulnerability marked as problematic has been reported in Free5GC up to 4.1.0. This affects the function ResolveNodeIdToIp of the file internal/sbi/processor/datapath.go of the component SMF. The manipulation leads to denial of service.
This vulnerability is referenced as CVE-2026-1974. Remote exploitation of the attack is possible. Furthermore, an exploit is available.
It is recommended to apply a patch to fix this issue.