Skip to main content

Vendor archive

mz-automation CVEs

Beta · best-effort

39 CVEs tagged to vendor mz-automation7 Critical, 23 High, 9 Medium, 0 Low, 0 Unrated.

CVE-2019-16510

Published Sep 19, 2019

libIEC61850 through 1.3.3 has a use-after-free in MmsServer_waitReady in mms/iso_mms/server/mms_server.c, as demonstrated by server_example_goose.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-1010300

Published Jul 15, 2019

mz-automation libiec61850 1.3.2 1.3.1 1.3.0 is affected by: Buffer Overflow. The impact is: Software crash. The component is: server_example_complex_array. The attack vector is: S…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-6719

Published Jan 23, 2019

An issue has been found in libIEC61850 v1.3.1. There is a use-after-free in the getState function in mms/iso_server/iso_server.c, as demonstrated by examples/server_example_goose/…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-6138

Published Jan 11, 2019

An issue has been found in libIEC61850 v1.3.1. Memory_malloc and Memory_calloc in hal/memory/lib_memory.c have memory leaks when called from mms/iso_mms/common/mms_value.c, server…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-6137

Published Jan 11, 2019

An issue was discovered in lib60870 2.1.1. LinkLayer_setAddress in link_layer/link_layer.c has a NULL pointer dereference.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-6136

Published Jan 11, 2019

An issue has been found in libIEC61850 v1.3.1. Ethernet_setProtocolFilter in hal/ethernet/linux/ethernet_linux.c has a SEGV, as demonstrated by sv_subscriber_example.c and sv_subs…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-6135

Published Jan 11, 2019

An issue has been found in libIEC61850 v1.3.1. Memory_malloc in hal/memory/lib_memory.c has a memory leak when called from Asn1PrimitiveValue_create in mms/asn1/asn1_ber_primitive…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2018-19185

Published Nov 12, 2018

An issue has been found in libIEC61850 v1.3. It is a heap-based buffer overflow in BerEncoder_encodeOctetString in mms/asn1/ber_encoder.c. This is exploitable even after CVE-2018-…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2018-19122

Published Nov 9, 2018

An issue has been found in libIEC61850 v1.3. It is a NULL pointer dereference in Ethernet_sendPacket in ethernet_bsd.c.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-19093

Published Nov 7, 2018

An issue has been found in libIEC61850 v1.3. It is a SEGV in ControlObjectClient_setCommandTerminationHandler in client/client_control.c. NOTE: the software maintainer disputes th…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2018-18957

Published Nov 5, 2018

An issue has been found in libIEC61850 v1.3. It is a stack-based buffer overflow in prepareGooseBuffer in goose/goose_publisher.c.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2018-18937

Published Nov 5, 2018

An issue has been found in libIEC61850 v1.3. It is a NULL pointer dereference in ClientDataSet_getValues in client/ied_connection.c.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2018-18834

Published Oct 30, 2018

An issue has been found in libIEC61850 v1.3. It is a heap-based buffer overflow in BerEncoder_encodeOctetString in mms/asn1/ber_encoder.c.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 26-39 of 39 CVEsPage 2 of 2