CVE-2025-59174CWE-228

Ericsson Packet Core Controller (PCC) versions prior to 1.39 contain a vulnerability where an attacker sending a large volume of specially crafted messages may…

High · published June 5, 2026

CVSS v4.0
7.1
EPSS
0%
Percentile
6.0
In the wild
Unconfirmed
What it is

Ericsson Packet Core Controller (PCC) versions prior to 1.39 contain a vulnerability where an attacker sending a large volume of specially crafted messages may cause service degradation.

The record
Technical detail
CVSS v4.0
7.1 · HIGH
Vector
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
EPSS
0.00165 · 6.0th percentile
Weakness
CWE-228 · Improper Handling of Syntactically Invalid Structure
Published
2026-06-05T13:44Z
EPSS history
Timeline
  • 05 JUN 13:44Z
    Ericsson Packet Core Controller (PCC) versions prior to 1.39 contain a vulnerability where an attacker sending a large volume of specially crafted messages may…
    cvelistv5