Description
Bendix EC80 Brake ECU
is vulnerable to a stack-based buffer overflow, which may allow an
attacker to crash the ECU. A crafted payload can then be used to
remotely execute arbitrary code or inject arbitrary CAN bus traffic.
This could cause the loss of the ABS function, steering assist,
speedometer, and shifting.
Published: 2026-08-27
Score: 7.7 High
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability is a stack‑based buffer overflow located in the Bendix EC80 Brake ECU firmware. A crafted payload can crash the ECU and subsequently allow an attacker to execute arbitrary code or inject arbitrary CAN bus traffic. The impact includes loss of critical vehicle functions such as ABS, steering assist, speedometer, and shifting, which directly threatens safety and could lead to loss of vehicle control.

Affected Systems

Affected products are Bendix EC80ESP 2nd CAN, EC80ESP 4S/4M, EC80ESP 6S/6M, EC80ESP CAN Gateway, EC80ESP PLC, EC80ESP+ 2nd CAN, EC80ESP+ 6S/6M, EC80ESP+ Integrated TPMS, EC80ESP+ J1708, and EC80ESP+ PLC. Firmware updates specific to each model are required: for the EC80ESP+ family the latest release is Z300822; for the EC80ESP 6S/6M, PLC, 2nd CAN, and CAN Gateway the patch is Z302578; and for EC80ESP 4S/4M and PLC the patch is Z302579.

Risk and Exploitability

The CVSS score of 7.7 indicates a high severity when the flaw is exploited. EPSS is not available, and the vulnerability is not listed in the CISA KEV catalog, suggesting that it has not yet been widely exploited in the wild. The exploit requires remote access to the CAN bus, which is typically limited to vehicle components or maintenance tools; however, if an attacker gains such access, the attack can be carried out from a distance, often without local presence. The absence of public exploitation evidence does not diminish the seriousness for users who have exposed CAN interfaces.

Generated by OpenCVE AI on August 28, 2026 at 07:10 UTC.

Remediation

Vendor Solution

Bendix recommends users update their firmware to the most recent firmware version releases. Users that need more help should contact Bendix directly at info@Bendix.com. * EC80ESP+ J1708: Users should update their firmware to version Z300822. * EC80ESP+ 6S/6M: Users  should update their firmware to version Z300822. * EC80ESP+ PLC: Users  should update their firmware to version Z300822. * EC80ESP+ 2nd CAN: Users should update their firmware to version Z300822. * EC80ESP+ Integrated TPMS: Users should update their firmware to version Z300822. * EC80ESP 6S/6M: Users should update their firmware to version Z302578. * EC80ESP PLC: Users should update their firmware to version Z302578. * EC80ESP 2nd CAN: Users should update their firmware to version Z302578. * EC80ESP CAN Gateway: Users should update their firmware to version Z302578. * EC80ESP 4S/4M: Users should update their firmware to version Z302579. * EC80ESP PLC: Users should update their firmware to version Z302579.


OpenCVE Recommended Actions

  • Update the EC80 ECU firmware to the vendor-recommended version for each affected model (Z300822 for the EC80ESP+ family, Z302578 for EC80ESP 6S/6M, PLC, 2nd CAN, and CAN Gateway, or Z302579 for EC80ESP 4S/4M and PLC).
  • Implement CAN bus access controls such as authentication and whitelisting to limit which devices can communicate with the ECU.
  • Deploy real‑time monitoring of CAN traffic for anomalous patterns that could indicate exploitation attempts.

Generated by OpenCVE AI on August 28, 2026 at 07:10 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 27 Aug 2026 18:00:00 +0000

Type Values Removed Values Added
Description Bendix EC80 Brake ECU is vulnerable to a stack-based buffer overflow, which may allow an attacker to crash the ECU. A crafted payload can then be used to remotely execute arbitrary code or inject arbitrary CAN bus traffic. This could cause the loss of the ABS function, steering assist, speedometer, and shifting.
Title Stack-based Buffer Overflow in Bendix EC80 Brake ECU
Weaknesses CWE-121
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H'}

cvssV4_0

{'score': 7.7, 'vector': 'CVSS:4.0/AV:A/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2026-08-27T20:54:20.022Z

Reserved: 2026-08-10T16:03:40.493Z

Link: CVE-2026-67560

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-08-28T00:18:08.150

Modified: 2026-08-28T00:18:08.150

Link: CVE-2026-67560

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-28T07:15:05Z

Weaknesses
  • CWE-121

    Stack-based Buffer Overflow