CVE-2024-25009: Ericsson Packet Core Controller

Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.

Ericsson Packet Core Controller (PCC) contains a vulnerability in Access and Mobility Management Function (AMF) where improper input validation can lead to denial of service which may result in service degradation.

Affected products

  • Ericsson Packet Core Controller: before 1.33 (fixed in 1.33)

Published 2024-08-20. Last modified 2026-06-17.