CVE-2024-45970
- EPSS 0.35%
- Veröffentlicht 15.11.2024 19:15:07
- Zuletzt bearbeitet 01.10.2025 17:45:49
Multiple Buffer overflows in the MMS Client in MZ Automation LibIEC61850 before commit ac925fae8e281ac6defcd630e9dd756264e9c5bc allow a malicious server to cause a stack-based buffer overflow via the MMS FileDirResponse message.
CVE-2024-45971
- EPSS 0.33%
- Veröffentlicht 15.11.2024 19:15:07
- Zuletzt bearbeitet 01.10.2025 17:45:10
Multiple Buffer overflows in the MMS Client in MZ Automation LibIEC61850 before commit 1f52be9ddeae00e69cd43e4cac3cb4f0c880c4f0 allow a malicious server to cause a stack-based buffer overflow via the MMS IdentifyResponse message.
CVE-2024-25366
- EPSS 0.71%
- Veröffentlicht 20.02.2024 16:15:10
- Zuletzt bearbeitet 02.04.2025 20:20:16
Buffer Overflow vulnerability in mz-automation.de libiec61859 v.1.4.0 allows a remote attacker to cause a denial of service via the mmsServer_handleGetNameListRequest function to the mms_getnamelist_service component.
CVE-2023-23205
- EPSS 0.12%
- Veröffentlicht 24.02.2023 16:15:11
- Zuletzt bearbeitet 12.03.2025 16:15:19
An issue was discovered in lib60870 v2.3.2. There is a memory leak in lib60870/lib60870-C/examples/multi_client_server/multi_client_server.c.
CVE-2021-45773
- EPSS 0.28%
- Veröffentlicht 14.01.2022 20:15:15
- Zuletzt bearbeitet 21.11.2024 06:33:01
A NULL pointer dereference in CS104_IPAddress_setFromString at src/iec60870/cs104/cs104_slave.c of lib60870 commit 0d5e76e can lead to a segmentation fault or application crash.
CVE-2021-21778
- EPSS 0.78%
- Veröffentlicht 25.08.2021 19:15:08
- Zuletzt bearbeitet 21.11.2024 05:48:57
A denial of service vulnerability exists in the ASDU message processing functionality of MZ Automation GmbH lib60870.NET 2.2.0. A specially crafted network request can lead to loss of communications. An attacker can send an unauthenticated message to...
CVE-2019-6137
- EPSS 0.34%
- Veröffentlicht 11.01.2019 17:29:00
- Zuletzt bearbeitet 21.11.2024 04:46:00
An issue was discovered in lib60870 2.1.1. LinkLayer_setAddress in link_layer/link_layer.c has a NULL pointer dereference.