CVE-2019-19944: Medium severity mz automation libiec61850 vulnerability
Published Dec 23, 2019
·Updated
In libIEC61850 1.4.0, BerDecoderdecodeUint32 in mms/asn1/berdecode.c has an out-of-bounds read, related to intLen and bufPos.
Affected Software
1 affected component
mz-automation libiec61850=1.4.0
Event History
Dec 23, 2019
CVE Published
via MITRE·06:39 PM
Data Sourced
via MITRE·06:39 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-19944?
CVE-2019-19944 has been assigned a moderate severity level due to the risk of out-of-bounds reading which could lead to information disclosure.
2
How do I fix CVE-2019-19944?
To fix CVE-2019-19944, upgrade to a patched version of libIEC61850 that addresses the out-of-bounds read issue.
3
What software is affected by CVE-2019-19944?
CVE-2019-19944 affects version 1.4.0 of the libIEC61850 library developed by MZ Automation.
4
What kind of vulnerabilities does CVE-2019-19944 represent?
CVE-2019-19944 represents an out-of-bounds read vulnerability that can occur in the BerDecoder_decodeUint32 function.
5
Is there a known exploit for CVE-2019-19944?
As of now, there are no publicly reported exploits specifically targeting CVE-2019-19944.