CVE-2026-32319

Ella Core is a 5G core designed for private networks. Prior to 1.5.1, Ella Core panics when processing a malformed integrity protected NGAP/NAS message with a length under 7 bytes. An attacker able to send crafted NAS messages to Ella Core can crash the process, causing service disruption for all connected subscribers. No authentication is required. This vulnerability is fixed in 1.5.1.
Configurations

No configuration.

History

13 Mar 2026, 19:54

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-13 19:54

Updated : 2026-03-13 19:54


NVD link : CVE-2026-32319

Mitre link : CVE-2026-32319

CVE.ORG link : CVE-2026-32319


JSON object : View

Products Affected

No product.

CWE
CWE-125

Out-of-bounds Read