Mz-automation libiec61850是Mz-automation个人开发者开源的一个 IEC 61850 协议的开源库。 Mz-automation libIEC61850 1.6.1及之前版本存在缓冲区错误漏洞,该漏洞源于通过特制MMS Initiate请求导致堆缓冲区溢出,可能在ASLR禁用时导致远程代码执行,在ASLR启用时导致内存损坏或拒绝服务。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| MZ Automation | libIEC61850 | 1.0.0≤ 1.6.1 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| MZ Automation | libIEC61850 | 1.0.0 ~ 1.6.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-16002 | 8.2 HIGH | Out-of-bounds Read in MZ Automation lib60870 |
| CVE-2026-50039 | 7.5 HIGH | Stack-based Buffer Overflow in MZ Automation libIEC61850 |
| CVE-2026-50032 | 7.5 HIGH | NULL Pointer Dereference in MZ Automation libIEC61850 |
| CVE-2026-50103 | 6.5 MEDIUM | Improper Handling of Syntactically Invalid Structure in MZ Automation libIEC61850 |
No comments yet