Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 08 Jun 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ericsson packet Core Gateway
|
|
| CPEs | cpe:2.3:a:ericsson:packet_core_gateway:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Ericsson packet Core Gateway
|
|
| Metrics |
cvssV3_1
|
Sun, 07 Jun 2026 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ericsson
Ericsson packet Core Gateway (pcg) |
|
| Vendors & Products |
Ericsson
Ericsson packet Core Gateway (pcg) |
Fri, 05 Jun 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 05 Jun 2026 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Ericsson Packet Core Gateway (PCG) versions prior to 1.30 contain an Improper Handling of Syntactically Invalid Structure (CWE-228) vulnerability where an attacker continuously sending a specially crafted message can cause service degradation. The impact continues as long the attack persists but the system recovers from the crashes when the attack stops. | |
| Title | Ericsson Packet Core Gateway (PCG) - Improper Handling of Syntactically Invalid Structure Vulnerability | |
| Weaknesses | CWE-228 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: ERIC
Published:
Updated: 2026-06-05T20:11:57.051Z
Reserved: 2026-02-04T12:41:54.869Z
Link: CVE-2026-25657
Updated: 2026-06-05T20:11:54.181Z
Status : Analyzed
Published: 2026-06-05T12:16:37.750
Modified: 2026-06-08T14:21:47.350
Link: CVE-2026-25657
No data.
OpenCVE Enrichment
Updated: 2026-06-07T11:17:02Z