CVE-2019-6135: High severity mz automation libiec61850 vulnerability
Published Jan 11, 2019
·Updated
An issue has been found in libIEC61850 v1.3.1. Memorymalloc in hal/memory/libmemory.c has a memory leak when called from Asn1PrimitiveValuecreate in mms/asn1/asn1berprimitivevalue.c, as demonstrated by goosepublisherexample.c and iec6185092LEexample.c.
Affected Software
1 affected component
mz-automation libiec61850=1.3.1
Event History
Jan 11, 2019
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Data Sourced
via NVD·05:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2019-6135?
CVE-2019-6135 is classified as a medium severity vulnerability due to its potential for memory leak issues.
2
How do I fix CVE-2019-6135?
To fix CVE-2019-6135, update to a later version of libIEC61850 that addresses the memory leak.
3
In which software version does CVE-2019-6135 occur?
CVE-2019-6135 occurs in libIEC61850 version 1.3.1.
4
What components are affected by CVE-2019-6135?
CVE-2019-6135 affects the memory allocation functions in libIEC61850, particularly in hal/memory/lib_memory.c.
5
Can CVE-2019-6135 lead to any security issues?
Yes, CVE-2019-6135 can lead to increased memory consumption and potential denial of service if exploited.