Ericsson Packet Core Gateway (PCG) versions prior to 1.30 contain an Improper Handling of Syntactically Invalid Structure (CWE-228) vulnerability where an attacker continuously sending a specially crafted message can cause service degradation. The impact continues as long the attack persists but the system recovers from the crashes when the attack stops.
Metrics
Affected Vendors & Products
References
History
Sun, 07 Jun 2026 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ericsson
Ericsson packet Core Gateway (pcg) |
|
| Vendors & Products |
Ericsson
Ericsson packet Core Gateway (pcg) |
Fri, 05 Jun 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 05 Jun 2026 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Ericsson Packet Core Gateway (PCG) versions prior to 1.30 contain an Improper Handling of Syntactically Invalid Structure (CWE-228) vulnerability where an attacker continuously sending a specially crafted message can cause service degradation. The impact continues as long the attack persists but the system recovers from the crashes when the attack stops. | |
| Title | Ericsson Packet Core Gateway (PCG) - Improper Handling of Syntactically Invalid Structure Vulnerability | |
| Weaknesses | CWE-228 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: ERIC
Published: 2026-06-05T11:03:02.273Z
Updated: 2026-06-05T20:11:57.051Z
Reserved: 2026-02-04T12:41:54.869Z
Link: CVE-2026-25657
Updated: 2026-06-05T20:11:54.181Z
Status : Awaiting Analysis
Published: 2026-06-05T12:16:37.750
Modified: 2026-06-05T15:56:37.130
Link: CVE-2026-25657
No data.