CVE-2022-2973: MZ Automation libIEC61850 NULL Pointer Dereference
MZ Automation's libIEC61850 (versions 1.4 and prior; version 1.5 prior to commit a3b04b7bc4872a5a39e5de3fdc5fbde52c09e10e) uses a NULL pointer in certain situations. which could allow an attacker to crash the server.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-2973?
CVE-2022-2973 is a vulnerability in MZ Automation's libIEC61850 software that can be exploited by an attacker to crash the server.
Which versions of libIEC61850 are affected by CVE-2022-2973?
Versions 1.4 and prior, as well as version 1.5 prior to commit a3b04b7bc4872a5a39e5de3fdc5fbde52c09e10e, are affected by CVE-2022-2973.
How does CVE-2022-2973 impact the server?
CVE-2022-2973 allows an attacker to crash the server by exploiting a NULL pointer in certain situations.
What is the severity of CVE-2022-2973?
CVE-2022-2973 has a severity rating of 7.5 (high).
Is there any fix available for CVE-2022-2973?
At the moment, there is no known fix for CVE-2022-2973. It is recommended to monitor the software vendor's website for any updates or patches.