CVE-2026-18583 | mz-automation libiec61850 up to 1.6.1 MMS Request mms_mapping.c checkDataSetAccess out-of-bounds (GHSA-7v2x-39mw-2979)

SecurityVulns

A vulnerability was found in mz-automation libiec61850 up to 1.6.1. It has been classified as problematic. This issue affects the function checkDataSetAccess of the file src/iec61850/server/mms_mapping/mms_mapping.c of the component MMS Request Handler. This manipulation causes out-of-bounds read.

This vulnerability is handled as CVE-2026-18583. The attack can be initiated remotely. Additionally, an exploit exists.

Upgrading the affected component is recommended.

The vendor was contacted early about this disclosure.VulDB Recent EntriesRead More