VYPR
Medium severity6.5NVD Advisory· Published Jun 5, 2026· Updated Jun 8, 2026

CVE-2026-25657

CVE-2026-25657

Description

Ericsson Packet Core Gateway (PCG) versions prior to 1.30 contain an Improper Handling of Syntactically Invalid Structure (CWE-228) vulnerability where an attacker continuously sending a specially crafted message can cause service degradation. The impact continues as long the attack persists but the system recovers from the crashes when the attack stops.

Affected products

2
  • cpe:2.3:a:ericsson:packet_core_gateway:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:ericsson:packet_core_gateway:*:*:*:*:*:*:*:*range: <1.30
    • (no CPE)range: <1.30

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.