Mz Automation libIEC61850是德国Mz Automation公司的一款用于电力系统通信的协议实现库。 Mz Automation libIEC61850 1.6.2之前版本存在缓冲区错误漏洞,该漏洞源于GOOSE有效载荷解析器存在边界处理缺陷,攻击者可通过单个未认证的Layer 2组播帧触发,导致解析器越界读取一个字节,可能造成拒绝服务。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| MZ Automation GmbH | libiec61850 | < 1.6.2 |
affected |
1.6.2 |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| MZ Automation GmbH | libiec61850 | 0 ~ 1.6.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-66360 | 7.5 HIGH | MZ Automation libiec61850 Out-of-bounds Read |
| CVE-2026-66349 | 6.5 MEDIUM | MZ Automation libiec61850 Out-of-bounds Read |
| CVE-2026-65421 | 6.5 MEDIUM | MZ Automation libiec61850 Out-of-bounds Read |
| CVE-2026-56758 | 6.5 MEDIUM | MZ Automation libiec61850 Out-of-bounds Read |
| CVE-2026-66369 | 6.5 MEDIUM | MZ Automation libiec61850 Out-of-bounds Read |
| CVE-2026-66720 | 6.5 MEDIUM | MZ Automation libiec61850 Out-of-bounds Read |
| CVE-2026-63550 | 6.5 MEDIUM | MZ Automation libiec61850 Out-of-bounds Read |
No comments yet