NA

CVE-2022-2970

Published: 23/09/2022 Updated: 26/09/2022
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

MZ Automation's libIEC61850 (versions 1.4 and prior; version 1.5 prior to commit a3b04b7bc4872a5a39e5de3fdc5fbde52c09e10e) does not sanitize input before memcpy is used, which could allow an malicious user to crash the device or remotely execute arbitrary code.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mz-automation libiec61850

ICS Advisories

MZ Automation libIEC61850
Critical Infrastructure Sectors: Energy