CVE-2024-25366

medium

Description

Buffer Overflow vulnerability in mz-automation.de libiec61859 v.1.4.0 allows a remote attacker to cause a denial of service via the mmsServer_handleGetNameListRequest function to the mms_getnamelist_service component.

References

https://www.mz-automation.de/

https://github.com/mz-automation/libiec61850/issues/492

https://github.com/mz-automation/libiec61850

Details

Source: Mitre, NVD

Published: 2024-02-20

Updated: 2024-08-16

Risk Information

CVSS v2

Base Score: 5

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P

Severity: Medium

CVSS v3

Base Score: 6.2

Vector: CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Severity: Medium