CVE-2026-18582 | mz-automation libiec61850 up to 1.6.1 Report Sending Path reporting.c Reporting_RCBWriteAccessHandler free of memory not on the heap (GHSA-7qg8-hm25-rv5v)

SecurityVulns

A vulnerability was found in mz-automation libiec61850 up to 1.6.1 and classified as problematic. This vulnerability affects the function Reporting_RCBWriteAccessHandler of the file src/iec61850/server/mms_mapping/reporting.c of the component Report Sending Path Handler. The manipulation results in free of memory not on the heap.

This vulnerability is known as CVE-2026-18582. It is possible to launch the attack remotely. Furthermore, an exploit is available.

It is suggested to upgrade the affected component.

The vendor was contacted early about this disclosure.VulDB Recent EntriesRead More