CVE-2022-1302: Malformed Goose Message in LibIEC61850 may result in a denial of service
Published Apr 12, 2022
·Updated
In the MZ Automation LibIEC61850 in versions prior to 1.5.1 an unauthenticated attacker can craft a goose message, which may result in a denial of service.
Affected Software
1 affected component
mz-automation libiec61850<1.5.1
Event History
Apr 12, 2022
CVE Published
via MITRE·07:30 AM
Data Sourced
via MITRE·07:30 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for the MZ Automation LibIEC61850 vulnerability?
The vulnerability ID for the MZ Automation LibIEC61850 vulnerability is CVE-2022-1302.
2
What is the severity of CVE-2022-1302?
The severity of CVE-2022-1302 is high with a CVSS score of 7.5.
3
How can an unauthenticated attacker exploit CVE-2022-1302?
An unauthenticated attacker can craft a goose message to exploit CVE-2022-1302.
4
What is the impact of exploiting CVE-2022-1302?
Exploiting CVE-2022-1302 may result in a denial of service.
5
How can I fix the MZ Automation LibIEC61850 vulnerability?
To fix the MZ Automation LibIEC61850 vulnerability, update to version 1.5.1 or later.