Packet Core Gateway (PCG) versions prior to 1.30 contain an Improper Handling
of Missing Values (CWE-230) vulnerability where an attacker continuously
sending a specially crafted message can cause service degradation. The impact continues as long the attack persists but the system recovers from the crashes when the attack stops.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 08 Jun 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ericsson packet Core Gateway
|
|
| CPEs | cpe:2.3:a:ericsson:packet_core_gateway:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Ericsson packet Core Gateway
|
|
| Metrics |
cvssV3_1
|
Sun, 07 Jun 2026 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ericsson
Ericsson packet Core Gateway (pcg) |
|
| Vendors & Products |
Ericsson
Ericsson packet Core Gateway (pcg) |
Fri, 05 Jun 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 05 Jun 2026 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Ericsson Packet Core Gateway (PCG) versions prior to 1.30 contain an Improper Handling of Missing Values (CWE-230) vulnerability where an attacker continuously sending a specially crafted message can cause service degradation. The impact continues as long the attack persists but the system recovers from the crashes when the attack stops. | |
| Title | Ericsson Packet Core Gateway (PCG) - Improper handling of missing values Vulnerability | |
| Weaknesses | CWE-230 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: ERIC
Published:
Updated: 2026-06-05T20:11:23.341Z
Reserved: 2026-02-04T12:41:54.869Z
Link: CVE-2026-25659
Updated: 2026-06-05T20:11:19.704Z
Status : Analyzed
Published: 2026-06-05T12:16:38.050
Modified: 2026-06-08T14:22:28.120
Link: CVE-2026-25659
No data.
OpenCVE Enrichment
Updated: 2026-06-07T11:16:59Z