Description
A NULL pointer dereference in the MMS Write Named Variable List handler, which may allow a network adjacent attacker to crash the server by sending a WriteRequest with an empty listOfData field.
Published: 2026-07-23
Score: 8.7 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A NULL pointer dereference occurs in the libIEC61850 MMS Write Named Variable List handler when flaw can be exploited by an attacker who is in network proximity to crash the server, causing an interruption of the affected service. The vulnerability leads to a loss of availability rather than compromising confidentiality or integrity, which is reflected in the high severity rating. The weakness is a classic null pointer dereference identified as CWE‑476.

Affected Systems

The affected product is MZ Automation’s libIEC61850 library. No specific version numbers are listed, so the issue likely applies to any releases of libIEC61850 prior to the latest build, which the vendor recommends for upgrade.

Risk and Exploitability

The CVSS score of 8.7 indicates a high severity level, but the EPSS score of less than 1 % suggests that exploitation is relatively unlikely at this time. The vulnerability is not cataloged in the CISA KEV database. Based on the description, the likely attack vector is a network‑adjacent adversary who can send a crafted MMS WriteRequest to the target. The exploit appears to require no authentication and can be performed from any device that can reach the MMS endpoint.

Generated by OpenCVE AI on August 3, 2026 at 20:57 UTC.

Remediation

Vendor Solution

MZ Automation recommends updating to the latest build of the libIEC61850 standard. Documentation can be found at https://github.com/mz-automation/libiec61850. https://github.com/mz-automation/libiec61850


OpenCVE Recommended Actions

  • Apply the latest libIEC61850 release as recommended by MZ Automation.
  • Restrict access to MOS IPC (MMS) services by using network segmentation or firewalls to limit exposure to untrusted devices.
  • Monitor network traffic for anomalous MMS fields that may indicate exploitation attempts.

Generated by OpenCVE AI on August 3, 2026 at 20:57 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 24 Jul 2026 18:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 24 Jul 2026 00:45:00 +0000

Type Values Removed Values Added
First Time appeared Mz-automation
Mz-automation libiec61850
Vendors & Products Mz-automation
Mz-automation libiec61850

Thu, 23 Jul 2026 21:45:00 +0000

Type Values Removed Values Added
Description A NULL pointer dereference in the MMS Write Named Variable List handler, which may allow a network adjacent attacker to crash the server by sending a WriteRequest with an empty listOfData field.
Title NULL Pointer Dereference in MZ Automation libIEC61850
Weaknesses CWE-476
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}

cvssV4_0

{'score': 8.7, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Mz-automation Libiec61850
cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2026-07-24T13:41:13.842Z

Reserved: 2026-06-09T20:01:29.573Z

Link: CVE-2026-50032

cve-icon Vulnrichment

Updated: 2026-07-24T13:41:09.761Z

cve-icon NVD

Status : Deferred

Published: 2026-07-23T21:17:04.773

Modified: 2026-07-30T14:12:18.697

Link: CVE-2026-50032

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-03T21:00:12Z

Weaknesses