CVE-2024-26529: High severity mz automation libiec61850 vulnerability
Published Mar 13, 2024
·Updated
An issue in mz-automation libiec61850 v.1.5.3 and before, allows a remote attacker to cause a denial of service (DoS) via the mmsServerhandleDeleteNamedVariableListRequest function of src/mms/isomms/server/mmsnamedvariablelistservice.c.
Affected Software
2 affected components
mz-automation libiec61850<1.5.3
mz-automation libiec61850<=1.5.3
Event History
Mar 13, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·08:15 AM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2024-26529?
The severity of CVE-2024-26529 is classified as a denial of service (DoS) vulnerability.
2
How do I fix CVE-2024-26529?
To fix CVE-2024-26529, upgrade to mz-automation libiec61850 version 1.5.4 or later.
3
What software is affected by CVE-2024-26529?
CVE-2024-26529 affects mz-automation libiec61850 versions up to 1.5.3.
4
What kind of attack can CVE-2024-26529 lead to?
CVE-2024-26529 can lead to a denial of service (DoS) attack.
5
Which function is related to CVE-2024-26529?
The vulnerability CVE-2024-26529 is related to the mmsServer_handleDeleteNamedVariableListRequest function.