Service Degradation Vulnerability in Ericsson Packet Core Controller
CVE-2024-53828
5.3MEDIUM
What is CVE-2024-53828?
A vulnerability exists in the Ericsson Packet Core Controller versions prior to 1.38, where an attacker can send a high volume of specially crafted messages. This can lead to service degradation, affecting the overall performance and reliability of the packet core services. Organizations utilizing affected versions are advised to implement necessary updates to mitigate the risk.
Affected Version(s)
Packet Core Controller (PCC) 0
References
CVSS V3.1
Score:
5.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
The UK’s National Cyber Security Centre (NCSC)
The UK Telecoms Lab (UKTL)
