A vulnerability classified as problematic has been found in Free5GC up to 4.1.0. Affected is the function SessionDeletionResponse of the component SMF. This manipulation causes null pointer dereference.

This vulnerability is tracked as CVE-2026-1976. The attack is possible to be carried out remotely. Moreover, an exploit is present.

It is suggested to install a patch to address this issue.