Vulnerabilities (CVE)

Filtered by vendor Mz-automation Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-19958 1 Mz-automation 1 Libiec61850 2020-08-24 4.3 MEDIUM 6.5 MEDIUM
In libIEC61850 1.4.0, StringUtils_createStringFromBuffer in common/string_utilities.c has an integer signedness issue that could lead to an attempted excessive memory allocation and denial of service.
CVE-2019-19957 1 Mz-automation 1 Libiec61850 2020-01-03 4.3 MEDIUM 6.5 MEDIUM
In libIEC61850 1.4.0, getNumberOfElements in mms/iso_mms/server/mms_access_result.c has an out-of-bounds read vulnerability, related to bufPos and elementLength.
CVE-2019-19930 1 Mz-automation 1 Libiec61850 2019-12-30 4.3 MEDIUM 6.5 MEDIUM
In libIEC61850 1.4.0, MmsValue_newOctetString in mms/iso_mms/common/mms_value.c has an integer signedness error that can lead to an attempted excessive memory allocation.
CVE-2019-19944 1 Mz-automation 1 Libiec61850 2019-12-30 4.3 MEDIUM 6.5 MEDIUM
In libIEC61850 1.4.0, BerDecoder_decodeUint32 in mms/asn1/ber_decode.c has an out-of-bounds read, related to intLen and bufPos.
CVE-2018-19121 1 Mz-automation 1 Libiec61850 2018-12-07 4.3 MEDIUM 4.3 MEDIUM
An issue has been found in libIEC61850 v1.3. It is a SEGV in Ethernet_receivePacket in ethernet_bsd.c.
CVE-2018-19122 1 Mz-automation 1 Libiec61850 2018-12-07 4.3 MEDIUM 4.3 MEDIUM
An issue has been found in libIEC61850 v1.3. It is a NULL pointer dereference in Ethernet_sendPacket in ethernet_bsd.c.