Vulnerabilities > MZ Automation > Libiec61850 > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-12-24 CVE-2019-19958 Allocation of Resources Without Limits or Throttling vulnerability in Mz-Automation Libiec61850 1.4.0
In libIEC61850 1.4.0, StringUtils_createStringFromBuffer in common/string_utilities.c has an integer signedness issue that could lead to an attempted excessive memory allocation and denial of service.
network
low complexity
mz-automation CWE-770
6.5
2019-12-24 CVE-2019-19957 Out-of-bounds Read vulnerability in Mz-Automation Libiec61850 1.4.0
In libIEC61850 1.4.0, getNumberOfElements in mms/iso_mms/server/mms_access_result.c has an out-of-bounds read vulnerability, related to bufPos and elementLength.
network
low complexity
mz-automation CWE-125
6.5
2019-12-23 CVE-2019-19944 Out-of-bounds Read vulnerability in Mz-Automation Libiec61850 1.4.0
In libIEC61850 1.4.0, BerDecoder_decodeUint32 in mms/asn1/ber_decode.c has an out-of-bounds read, related to intLen and bufPos.
network
low complexity
mz-automation CWE-125
6.5
2019-12-23 CVE-2019-19930 Integer Overflow or Wraparound vulnerability in Mz-Automation Libiec61850 1.4.0
In libIEC61850 1.4.0, MmsValue_newOctetString in mms/iso_mms/common/mms_value.c has an integer signedness error that can lead to an attempted excessive memory allocation.
network
low complexity
mz-automation CWE-190
6.5
2018-11-09 CVE-2018-19122 NULL Pointer Dereference vulnerability in Mz-Automation Libiec61850 1.3
An issue has been found in libIEC61850 v1.3.
network
low complexity
mz-automation CWE-476
4.3
2018-11-09 CVE-2018-19121 NULL Pointer Dereference vulnerability in Mz-Automation Libiec61850 1.3
An issue has been found in libIEC61850 v1.3.
network
low complexity
mz-automation CWE-476
4.3