Description
Bendix EC80 Brake ECU is vulnerable to an out-of-bounds write, which could allow an attacker
to deliver a payload that could establish an arbitrary write primitive,
which could crash the ECU.
Published: 2026-08-27
Score: 7.1 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The Bendix EC80 Brake ECU processes data without proper bounds checking, which creates an out‑of‑bounds write. An attacker can send a crafted payload that establishes an arbitrary write primitive, potentially leading to a crash of the ECU or to execution of malicious code via the corrupted memory area.

Affected Systems

The vulnerability affects multiple Bendix EC80ESP products, including the 2nd CAN, 4S/4M, 6S/6M, CAN Gateway, PLC, and the EC80ESP+ variants such as the 2nd CAN, 6S/6M, PLC, Integrated TPMS, and J1708 models. All of these devices require a firmware upgrade; Bendix recommends Z302578 for most components, Z302579 for the 4S/4M and PLC models, and Z300822 for the EC80ESP+ J1708, 6S/6M, PLC, 2nd CAN, and Integrated TPMS versions.

Risk and Exploitability

The CVSS score of 7.1 indicates moderate‑to‑high severity. EPSS data is not available, and the vulnerability is not listed in CISA’s KEV catalog, so the exact likelihood of exploitation remains uncertain. The likely attack vector is remote, delivered over vehicle networks such as CAN or J1708, where an adversary could inject malicious frames to trigger the out‑of‑bounds write and destabilize the ECU. While precise exploitation probability cannot be quantified, the impact warrants prompt remediation.

Generated by OpenCVE AI on August 28, 2026 at 07:11 UTC.

Remediation

Vendor Solution

Bendix recommends users update their firmware to the most recent firmware version releases. Users that need more help should contact Bendix directly at info@Bendix.com. * EC80ESP+ J1708: Users should update their firmware to version Z300822. * EC80ESP+ 6S/6M: Users  should update their firmware to version Z300822. * EC80ESP+ PLC: Users  should update their firmware to version Z300822. * EC80ESP+ 2nd CAN: Users should update their firmware to version Z300822. * EC80ESP+ Integrated TPMS: Users should update their firmware to version Z300822. * EC80ESP 6S/6M: Users should update their firmware to version Z302578. * EC80ESP PLC: Users should update their firmware to version Z302578. * EC80ESP 2nd CAN: Users should update their firmware to version Z302578. * EC80ESP CAN Gateway: Users should update their firmware to version Z302578. * EC80ESP 4S/4M: Users should update their firmware to version Z302579. * EC80ESP PLC: Users should update their firmware to version Z302579.


OpenCVE Recommended Actions

  • Update all affected EC80ESP components to the latest firmware releases—Z302578 for the 2nd CAN, 6S/6M, PLC, and CAN Gateway; Z302579 for the 4S/4M and PLC models; and Z300822 for the EC80ESP+ J1708, 6S/6M, PLC, 2nd CAN, and Integrated TPMS devices.
  • If a firmware upgrade cannot be performed immediately, isolate the ECU from external CAN/J1708 traffic until the update is applied to prevent delivery of malicious frames.
  • Contact Bendix support at info@Bendix.com for assistance with firmware installation or if additional security controls are needed.

Generated by OpenCVE AI on August 28, 2026 at 07:11 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 28 Aug 2026 16:45:00 +0000

Type Values Removed Values Added
First Time appeared Bendix
Bendix ec80esp+ 2nd Can
Bendix ec80esp+ 6s/6m
Bendix ec80esp+ Integrated Tpms
Bendix ec80esp+ J1708
Bendix ec80esp+ Plc
Bendix ec80esp 2nd Can
Bendix ec80esp 4s/4m
Bendix ec80esp 6s/6m
Bendix ec80esp Can Gateway
Bendix ec80esp Plc
Vendors & Products Bendix
Bendix ec80esp+ 2nd Can
Bendix ec80esp+ 6s/6m
Bendix ec80esp+ Integrated Tpms
Bendix ec80esp+ J1708
Bendix ec80esp+ Plc
Bendix ec80esp 2nd Can
Bendix ec80esp 4s/4m
Bendix ec80esp 6s/6m
Bendix ec80esp Can Gateway
Bendix ec80esp Plc

Fri, 28 Aug 2026 14:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 27 Aug 2026 18:00:00 +0000

Type Values Removed Values Added
Description Bendix EC80 Brake ECU is vulnerable to an out-of-bounds write, which could allow an attacker to deliver a payload that could establish an arbitrary write primitive, which could crash the ECU.
Title Out-of-bounds Write in Bendix EC80 Brake ECU
Weaknesses CWE-787
References
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N'}

cvssV4_0

{'score': 7.1, 'vector': 'CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N'}


Subscriptions

Bendix Ec80esp+ 2nd Can Ec80esp+ 6s/6m Ec80esp+ Integrated Tpms Ec80esp+ J1708 Ec80esp+ Plc Ec80esp 2nd Can Ec80esp 4s/4m Ec80esp 6s/6m Ec80esp Can Gateway Ec80esp Plc
cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2026-08-28T14:13:53.649Z

Reserved: 2026-08-10T16:03:40.497Z

Link: CVE-2026-68967

cve-icon Vulnrichment

Updated: 2026-08-28T14:06:14.631Z

cve-icon NVD

Status : Received

Published: 2026-08-28T00:18:08.480

Modified: 2026-08-28T16:18:21.303

Link: CVE-2026-68967

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-28T16:13:49Z

Weaknesses