Описание
A crafted IEC 60870-5-104 I-frame with a declared object count exceeding what fits in the ASDU body causes InformationObject_ParseObjectAddress to read one byte past the end of the heap-allocated message buffer.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | needs-triage | |
| esm-apps/resolute | needs-triage | |
| jammy | DNE | |
| noble | DNE | |
| resolute | needs-triage | |
| upstream | needs-triage |
Показывать по
10
Ссылки на источники
EPSS
Процентиль: 18%
0.00264
Низкий
6.5 Medium
CVSS3
Связанные уязвимости
CVSS3: 6.5
nvd
12 дней назад
A crafted IEC 60870-5-104 I-frame with a declared object count exceeding what fits in the ASDU body causes InformationObject_ParseObjectAddress to read one byte past the end of the heap-allocated message buffer.
CVSS3: 6.5
github
12 дней назад
A crafted IEC 60870-5-104 I-frame with a declared object count exceeding what fits in the ASDU body causes InformationObject_ParseObjectAddress to read one byte past the end of the heap-allocated message buffer.
EPSS
Процентиль: 18%
0.00264
Низкий
6.5 Medium
CVSS3