Medium severity6.5NVD Advisory· Published Jun 5, 2026· Updated Jun 8, 2026
CVE-2026-25659
CVE-2026-25659
Description
Ericsson Packet Core Gateway (PCG) versions prior to 1.30 contain an Improper Handling of Missing Values (CWE-230) vulnerability where an attacker continuously sending a specially crafted message can cause service degradation. The impact continues as long the attack persists but the system recovers from the crashes when the attack stops.
Affected products
2cpe:2.3:a:ericsson:packet_core_gateway:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:ericsson:packet_core_gateway:*:*:*:*:*:*:*:*range: <1.30
- (no CPE)range: <1.30
Patches
Vulnerability mechanics
References
1- www.ericsson.com/en/about-us/security/psirt/cve-2026-25659nvdVendor Advisory
News mentions
0No linked articles in our index yet.