cvedb.io
CVE-2026-25658
MEDIUM · CVSS 6.5
EPSS exploitation probability: 0%
Published 2026-06-05T12:16:37.907 · Last modified 2026-06-17T10:25:01.767

Summary

Ericsson Packet Core Gateway (PCG) versions prior to 1.30 contain an Improper Handling of Missing Values (CWE-230) vulnerability where an attacker continuously sending a specially crafted message can cause service degradation. The impact continues as long the attack persists but the system recovers from the crashes when the attack stops.

Affected products

ericsson — packet_core_gateway

Does this affect you?

Add your gear to cvedb and we'll alert you only when ericsson ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.