6.9

CVE-2026-61893

MZ Automation lib60870 Out-of-bounds Read

A crafted IEC 60870-5-104 I-frame with TypeID 104 (C_TS_NA_1) and an 
inflated object count causes TestCommand_getFromBuffer to read one byte 
past the end of the heap-allocated message buffer.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerMZ Automation
Produkt lib60870
Default Statusunaffected
Version 2.4.0
Status affected
Version 2.4.1
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.26% 0.181
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
DHS.gov 6.9 0 0
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
DHS.gov 6.5 3.9 2.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L
CWE-125 Out-of-bounds Read

The product reads data past the end, or before the beginning, of the intended buffer.

https://github.com/mz-automation/lib60870/security/advisories/GHSA-g3w7-x5rx-83xm
https://www.cisa.gov/news-events/ics-advisories/icsa-26-211-11
https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-211-11.json