Cryptographic Authentication Vulnerability in free5GC AUSF Component
CVE-2026-55785

3.7LOW

Key Information:

Vendor

Free5gc

Status
Vendor
CVE Published:
28 August 2026

What is CVE-2026-55785?

The AUSF component of free5GC, an open-source implementation of the 5G core network, has a vulnerability that allows for insecure cryptographic authentication comparisons. In versions prior to 1.4.5, this issue arises from the use of consistent equality helpers, specifically in the ue_authentication.go file. The Auth5gAkaComfirmRequestProcedure improperly compares authentication values using methods that can lead to mismatch-dependent timing variations. Although practical exploitation as a remote timing oracle was not demonstrated due to HTTP/SBI timing unpredictability, the INFO-level logging exposes sensitive authentication information to log collectors, operators, or other monitoring processes, increasing the risk of data exposure. This critical issue has been addressed in the release of version 1.4.5.

Affected Version(s)

free5gc < 1.4.5

References

CVSS V3.1

Score:
3.7
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.