CVE-2026-50032: NULL Pointer Dereference in MZ Automation libIEC61850
Published Jul 23, 2026
·Updated
A NULL pointer dereference in the MMS Write Named Variable List handler, which may allow a network adjacent attacker to crash the server by sending a WriteRequest with an empty listOfData field.
Affected Software
1 affected component
MZ Automation LibIEC61850
Event History
Jul 23, 2026
CVE Published
via MITRE·08:53 PM
Data Sourced
via MITRE·08:53 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·09:17 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-50032?
CVE-2026-50032 has a high severity rating of 7.5.
2
What kind of impact does CVE-2026-50032 have?
CVE-2026-50032 can lead to a denial of service by crashing the affected server.
3
Who can exploit CVE-2026-50032?
A network adjacent attacker can exploit CVE-2026-50032 to crash the server.
4
What is the nature of the vulnerability in CVE-2026-50032?
CVE-2026-50032 is a NULL pointer dereference vulnerability in the MMS Write Named Variable List handler.
5
How can I mitigate CVE-2026-50032?
Mitigation for CVE-2026-50032 may involve updating the affected MZ Automation LibIEC61850 software and implementing network security measures.