Service Degradation Vulnerability in Ericsson Packet Core Controller
CVE-2024-53828

5.3MEDIUM

Key Information:

Vendor

Ericsson

Vendor
CVE Published:
1 April 2026

What is CVE-2024-53828?

A vulnerability exists in the Ericsson Packet Core Controller versions prior to 1.38, where an attacker can send a high volume of specially crafted messages. This can lead to service degradation, affecting the overall performance and reliability of the packet core services. Organizations utilizing affected versions are advised to implement necessary updates to mitigate the risk.

Affected Version(s)

Packet Core Controller (PCC) 0

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

The UK’s National Cyber Security Centre (NCSC)
The UK Telecoms Lab (UKTL)
.