inflated object count causes TestCommand_getFromBuffer to read one byte
past the end of the heap-allocated message buffer.
Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
MZ Automation recommends users update to version 2.4.1 when available. See MZ Automation advisory for more information: https://github.com/mz-automation/lib60870/security/advisories/GHSA-g3w7-x5rx-83xm
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 30 Jul 2026 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A crafted IEC 60870-5-104 I-frame with TypeID 104 (C_TS_NA_1) and an inflated object count causes TestCommand_getFromBuffer to read one byte past the end of the heap-allocated message buffer. | |
| Title | MZ Automation lib60870 Out-of-bounds Read | |
| Weaknesses | CWE-125 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2026-07-30T22:58:32.226Z
Reserved: 2026-07-16T22:10:53.022Z
Link: CVE-2026-61893
No data.
No data.
No data.
OpenCVE Enrichment
No data.
-
CWE-125
Out-of-bounds Read