CVE-2026-32320: Ella Core: AMF DoS via malformed PathSwitchRequest with empty NR security capability bitstrings
(updated )
Ella Core panics when processing a PathSwitchRequest containing UE Security Capabilities with zero-length NR encryption or integrity protection algorithm bitstrings, resulting in a denial of service.
References
Code Behaviors & Features
Detect and mitigate CVE-2026-32320 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →