CVE-2022-21159: High severity mz automation libiec61850 vulnerability
A denial of service vulnerability exists in the parseNormalModeParameters functionality of MZ Automation GmbH libiec61850 1.5.0. A specially-crafted series of network requests can lead to denial of service. An attacker can send a sequence of malformed iec61850 messages to trigger this vulnerability.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2022-21159?
CVE-2022-21159 has been classified as a denial of service vulnerability.
How do I fix CVE-2022-21159?
To mitigate CVE-2022-21159, upgrading to a patched version of MZ Automation libiec61850 is recommended.
What can an attacker do with CVE-2022-21159?
An attacker can send specially-crafted network requests to cause a denial of service in the affected software.
Which version of software is affected by CVE-2022-21159?
CVE-2022-21159 specifically affects MZ Automation libiec61850 version 1.5.0.
How can I determine if my system is vulnerable to CVE-2022-21159?
You can determine vulnerability by checking if your system is running MZ Automation libiec61850 version 1.5.0.