LIVE · cybersecurity feed
Live wire
cve recordmedium

CVE-2026-33283

ellanetworks · ella core

Published
CVSS6.5
Severitymedium
WeaknessCWE-476
ExploitedNot in CISA KEV

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Description

Ella Core is a 5G core designed for private networks. Versions prior to 1.6.0 panic when processing malformed UL NAS Transport NAS messages without a Request Type. An attacker able to send crafted NAS messages to Ella Core can crash the process, causing service disruption for all connected subscribers. No authentication is required. Version 1.6.0 adds a guard when receiving an UL NAS Message without a Request Type given no SM Context.

References

← Back to the CVE Tracker

Our coverage of CVE-2026-33283

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-33283.