🔐 CVE Alert

CVE-2026-75895

UNKNOWN 0.0

Out of bounds read at smpp34_unpack()

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In libsmpp35 from 0.1.0 through 1.8.0 out of bound read issue was found in the at smpp34_unpack() function via attacker controlled SMPP PDUs, leading to memory corruption.

CWE CWE-125
Vendor osmocom
Product libsmpp34
Published Sep 18, 2026
Stay Ahead of the Next One

Get instant alerts for osmocom libsmpp34

Be the first to know when new unknown vulnerabilities affecting osmocom libsmpp34 are published — delivered to Slack, Telegram or Discord.

Get Free Alerts → Free · No credit card · 60 sec setup

Affected Versions

Osmocom / libsmpp34
1.10.0 < 1.14.5

References

NVD ↗ CVE.org ↗ EPSS Data ↗
cgit.osmocom.org: https://cgit.osmocom.org/libsmpp34/commit/?id=af0e2912057551dab97bbe26e6a41f18a75f3bbb

Credits

Nikolas Null "n0k0" - Security Researcher at mnemonic