MZ Automation's libIEC61850 (versions 1.4 and prior; version 1.5 prior to commit a3b04b7bc4872a5a39e5de3fdc5fbde52c09e10e) is vulnerable to a stack-based buffer overflow, which could allow an attacker to crash the device or remotely execute arbitrary code.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.cisa.gov/uscert/ics/advisories/icsa-22-251-01 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2022-09-23T15:28:50.991737Z
Updated: 2024-09-16T16:34:06.151Z
Reserved: 2022-08-23T00:00:00
Link: CVE-2022-2972
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-09-23T16:15:10.940
Modified: 2024-11-21T07:02:00.737
Link: CVE-2022-2972
Redhat
No data.