LIVE · cybersecurity feed
Live wire
cve recordhigh

CVE-2026-32319

ellanetworks · ella core

Published
CVSS7.5
Severityhigh
WeaknessCWE-125
ExploitedNot in CISA KEV

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Description

Ella Core is a 5G core designed for private networks. Prior to 1.5.1, Ella Core panics when processing a malformed integrity protected NGAP/NAS message with a length under 7 bytes. An attacker able to send crafted NAS messages to Ella Core can crash the process, causing service disruption for all connected subscribers. No authentication is required. This vulnerability is fixed in 1.5.1.

References

← Back to the CVE Tracker

Our coverage of CVE-2026-32319

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-32319.