Mz-automation

Libiec61850

36 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.43%
  • Veröffentlicht 23.12.2019 19:15:11
  • Zuletzt bearbeitet 21.11.2024 04:35:42

In libIEC61850 1.4.0, BerDecoder_decodeUint32 in mms/asn1/ber_decode.c has an out-of-bounds read, related to intLen and bufPos.

Exploit
  • EPSS 0.52%
  • Veröffentlicht 23.12.2019 03:15:12
  • Zuletzt bearbeitet 21.11.2024 04:35:41

In libIEC61850 1.4.0, MmsValue_decodeMmsData in mms/iso_mms/server/mms_access_result.c has a heap-based buffer overflow.

Exploit
  • EPSS 0.44%
  • Veröffentlicht 23.12.2019 03:15:12
  • Zuletzt bearbeitet 21.11.2024 04:35:41

In libIEC61850 1.4.0, MmsValue_newOctetString in mms/iso_mms/common/mms_value.c has an integer signedness error that can lead to an attempted excessive memory allocation.

Exploit
  • EPSS 0.39%
  • Veröffentlicht 19.09.2019 16:15:11
  • Zuletzt bearbeitet 21.11.2024 04:30:43

libIEC61850 through 1.3.3 has a use-after-free in MmsServer_waitReady in mms/iso_mms/server/mms_server.c, as demonstrated by server_example_goose.

Exploit
  • EPSS 0.3%
  • Veröffentlicht 15.07.2019 18:15:11
  • Zuletzt bearbeitet 21.11.2024 04:18:08

mz-automation libiec61850 1.3.2 1.3.1 1.3.0 is affected by: Buffer Overflow. The impact is: Software crash. The component is: server_example_complex_array. The attack vector is: Send a specific MMS protocol packet.

Exploit
  • EPSS 0.39%
  • Veröffentlicht 23.01.2019 22:29:00
  • Zuletzt bearbeitet 21.11.2024 04:47:00

An issue has been found in libIEC61850 v1.3.1. There is a use-after-free in the getState function in mms/iso_server/iso_server.c, as demonstrated by examples/server_example_goose/server_example_goose.c and examples/server_example_61400_25/server_exam...

Exploit
  • EPSS 0.33%
  • Veröffentlicht 11.01.2019 17:29:00
  • Zuletzt bearbeitet 21.11.2024 04:46:01

An issue has been found in libIEC61850 v1.3.1. Memory_malloc and Memory_calloc in hal/memory/lib_memory.c have memory leaks when called from mms/iso_mms/common/mms_value.c, server/mms_mapping/mms_mapping.c, and server/mms_mapping/mms_sv.c (via common...

Exploit
  • EPSS 0.33%
  • Veröffentlicht 11.01.2019 17:29:00
  • Zuletzt bearbeitet 21.11.2024 04:46:00

An issue has been found in libIEC61850 v1.3.1. Memory_malloc in hal/memory/lib_memory.c has a memory leak when called from Asn1PrimitiveValue_create in mms/asn1/asn1_ber_primitive_value.c, as demonstrated by goose_publisher_example.c and iec61850_9_2...

Exploit
  • EPSS 0.33%
  • Veröffentlicht 11.01.2019 17:29:00
  • Zuletzt bearbeitet 21.11.2024 04:46:00

An issue has been found in libIEC61850 v1.3.1. Ethernet_setProtocolFilter in hal/ethernet/linux/ethernet_linux.c has a SEGV, as demonstrated by sv_subscriber_example.c and sv_subscriber.c.

Exploit
  • EPSS 0.46%
  • Veröffentlicht 12.11.2018 05:29:00
  • Zuletzt bearbeitet 21.11.2024 03:57:29

An issue has been found in libIEC61850 v1.3. It is a heap-based buffer overflow in BerEncoder_encodeOctetString in mms/asn1/ber_encoder.c. This is exploitable even after CVE-2018-18834 has been patched, with a different dataSetValue sequence than the...