Description
Nozomi Networks Labs identified a CWE-787: Out-of-bounds Write vulnerability in the process-image management functionality of KUNBUS piControl in version 2.6.2 that allows a local authenticated attacker with device configuration access to write attacker-controlled data outside the bounds of the process-image buffer and corrupt adjacent kernel memory, resulting in kernel memory corruption and denial of service, by supplying crafted device configuration data and crafted input through the piControl character device.
Published: 2026-08-14
Score: 7.3 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

KUNBUS piControl version 2.6.2 contains an out‑of‑bounds write in its process‑image management functionality. A local attacker who is authenticated with device configuration privileges can supply crafted configuration data and input to the piControl character device, allowing data to be written outside the bounds of the process‑image buffer and corrupt adjacent kernel memory. This kernel memory corruption can lead to system instability or complete denial of service.

Affected Systems

Devices running KUNBUS piControl 2.6.2 are affected. Other versions are not known to contain this flaw and are not listed as vulnerable.

Risk and Exploitability

The vulnerability scores a CVSS score of 7.3, indicating high severity. EPSS is not available and the issue is not listed in CISA’s KEV catalog. Exploitation requires local authenticated access to the device configuration interface and the piControl character device, so the attack surface is limited to insiders or compromised devices. If exploited, the attacker can corrupt kernel memory, which can crash the system or potentially allow further escalation. The lack of an available public patch increases the risk for impacted installations until a vendor fix is released.

Generated by OpenCVE AI on August 14, 2026 at 16:51 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply an available vendor patch or upgrade to a non‑vulnerable version of KUNBUS piControl as soon as it is released.
  • Restrict privileged access to the piControl character device and device configuration settings so that only trusted administrators can modify configuration data.
  • Enable kernel security mitigations such as address‑space layout randomization and stack canaries to reduce the impact of any remaining memory corruption vulnerabilities.

Generated by OpenCVE AI on August 14, 2026 at 16:51 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 17 Aug 2026 11:30:00 +0000

Type Values Removed Values Added
First Time appeared Kunbus
Kunbus picontrol
Vendors & Products Kunbus
Kunbus picontrol

Fri, 14 Aug 2026 20:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 14 Aug 2026 15:30:00 +0000

Type Values Removed Values Added
Description Nozomi Networks Labs identified a CWE-787: Out-of-bounds Write vulnerability in the process-image management functionality of KUNBUS piControl in version 2.6.2 that allows a local authenticated attacker with device configuration access to write attacker-controlled data outside the bounds of the process-image buffer and corrupt adjacent kernel memory, resulting in kernel memory corruption and denial of service, by supplying crafted device configuration data and crafted input through the piControl character device.
Title Out-of-bounds Write in KUNBUS piControl
Weaknesses CWE-787
References
Metrics cvssV4_0

{'score': 7.3, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Kunbus Picontrol
cve-icon MITRE

Status: PUBLISHED

Assigner: Nozomi

Published:

Updated: 2026-08-14T19:45:53.311Z

Reserved: 2026-06-24T13:50:19.502Z

Link: CVE-2026-13196

cve-icon Vulnrichment

Updated: 2026-08-14T19:45:47.635Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-08-14T16:16:49.397

Modified: 2026-08-28T19:46:29.323

Link: CVE-2026-13196

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-17T11:02:08Z

Weaknesses