Impact
The Bendix EC80 Brake ECU processes data without proper bounds checking, which creates an out‑of‑bounds write. An attacker can send a crafted payload that establishes an arbitrary write primitive, potentially leading to a crash of the ECU or to execution of malicious code via the corrupted memory area.
Affected Systems
The vulnerability affects multiple Bendix EC80ESP products, including the 2nd CAN, 4S/4M, 6S/6M, CAN Gateway, PLC, and the EC80ESP+ variants such as the 2nd CAN, 6S/6M, PLC, Integrated TPMS, and J1708 models. All of these devices require a firmware upgrade; Bendix recommends Z302578 for most components, Z302579 for the 4S/4M and PLC models, and Z300822 for the EC80ESP+ J1708, 6S/6M, PLC, 2nd CAN, and Integrated TPMS versions.
Risk and Exploitability
The CVSS score of 7.1 indicates moderate‑to‑high severity. EPSS data is not available, and the vulnerability is not listed in CISA’s KEV catalog, so the exact likelihood of exploitation remains uncertain. The likely attack vector is remote, delivered over vehicle networks such as CAN or J1708, where an adversary could inject malicious frames to trigger the out‑of‑bounds write and destabilize the ECU. While precise exploitation probability cannot be quantified, the impact warrants prompt remediation.
OpenCVE Enrichment