Ericsson
Packet Core Gateway (PCG) versions prior to 1.30 contain an Improper Handling
of Missing Values (CWE-230) vulnerability where an attacker continuously
sending a specially crafted message can cause service degradation. The impact continues as long the attack persists but the system recovers from the crashes when the attack stops.
Metrics
Affected Vendors & Products
References
History
Sun, 07 Jun 2026 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ericsson
Ericsson packet Core Gateway (pcg) |
|
| Vendors & Products |
Ericsson
Ericsson packet Core Gateway (pcg) |
Fri, 05 Jun 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 05 Jun 2026 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Ericsson Packet Core Gateway (PCG) versions prior to 1.30 contain an Improper Handling of Missing Values (CWE-230) vulnerability where an attacker continuously sending a specially crafted message can cause service degradation. The impact continues as long the attack persists but the system recovers from the crashes when the attack stops. | |
| Title | Ericsson Packet Core Gateway (PCG) - Improper handling of missing values Vulnerability | |
| Weaknesses | CWE-230 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: ERIC
Published: 2026-06-05T11:08:39.929Z
Updated: 2026-06-05T20:11:23.341Z
Reserved: 2026-02-04T12:41:54.869Z
Link: CVE-2026-25659
Updated: 2026-06-05T20:11:19.704Z
Status : Awaiting Analysis
Published: 2026-06-05T12:16:38.050
Modified: 2026-06-05T15:56:37.130
Link: CVE-2026-25659
No data.