Free of Memory not on the Heap in libIEC61850 - #VU136972

 

Free of Memory not on the Heap in libIEC61850 - #VU136972

Published: July 7, 2026


Vulnerability identifier: #VU136972
CSH Severity: Medium
CVSS v4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N]
CVE-ID: N/A
CWE-ID: CWE-590
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to cause a denial of service.

The vulnerability exists due to free of memory not on the heap in sendNextReportEntrySegment when processing an oversized RptID during report sending after reporting is enabled with GI. A remote attacker can write an oversized RptID to a report control block and trigger report generation to cause a denial of service.

The issue is triggered after the server accepts the RptID write and later serializes the value in the report send path using a stack-backed visible string.


Affected software

libIEC61850

Remediation

Install security update from vendor's website.

libIEC61850 - update to 1.6.2

External References

Related Security Bulletins