📦 Libiec61850

by Mz Automation

🔍 What is Libiec61850?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-45970

CRITICAL CVSS 9.8 Nov 15, 2024

This critical vulnerability allows a malicious MMS server to trigger a stack-based buffer overflow in the MZ Automation LibIEC61850 client via specially crafted FileDirResponse messages. Successful ex...

CVE-2024-26529

HIGH CVSS 7.5 Mar 13, 2024

A vulnerability in mz-automation libiec61850 versions 1.5.3 and earlier allows remote attackers to cause denial of service (DoS) by exploiting the mmsServer_handleDeleteNamedVariableListRequest functi...

CVE-2023-27772

HIGH CVSS 7.5 Apr 13, 2023

CVE-2023-27772 is a segmentation fault vulnerability in libiec61850's ControlObjectClient_setOrigin() function that can cause denial of service or potentially allow arbitrary code execution. This affe...

CVE-2022-21159

HIGH CVSS 7.5 Apr 15, 2022

CVE-2022-21159 is a denial-of-service vulnerability in libiec61850's parseNormalModeParameters function where specially crafted IEC 61850 network messages can crash the service. This affects systems u...

CVE-2021-45769

HIGH CVSS 7.5 Jan 14, 2022

This vulnerability in libiec61850 v1.5.0 allows attackers to cause a denial of service by triggering a NULL pointer dereference in the AcseConnection_parseMessage function. Systems using this library ...