Vulnerabilities > MZ Automation > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-12-23 CVE-2019-19931 Out-of-bounds Write vulnerability in Mz-Automation Libiec61850 1.4.0
In libIEC61850 1.4.0, MmsValue_decodeMmsData in mms/iso_mms/server/mms_access_result.c has a heap-based buffer overflow.
6.8
2019-12-23 CVE-2019-19930 Integer Overflow or Wraparound vulnerability in Mz-Automation Libiec61850 1.4.0
In libIEC61850 1.4.0, MmsValue_newOctetString in mms/iso_mms/common/mms_value.c has an integer signedness error that can lead to an attempted excessive memory allocation.
4.3
2019-09-19 CVE-2019-16510 Use After Free vulnerability in Mz-Automation Libiec61850
libIEC61850 through 1.3.3 has a use-after-free in MmsServer_waitReady in mms/iso_mms/server/mms_server.c, as demonstrated by server_example_goose.
network
low complexity
mz-automation CWE-416
5.0
2019-07-15 CVE-2019-1010300 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Mz-Automation Libiec61850 1.3.0/1.3.1/1.3.2
mz-automation libiec61850 1.3.2 1.3.1 1.3.0 is affected by: Buffer Overflow.
network
low complexity
mz-automation CWE-119
5.0
2019-01-23 CVE-2019-6719 Use After Free vulnerability in Mz-Automation Libiec61850 1.3.1
An issue has been found in libIEC61850 v1.3.1.
network
low complexity
mz-automation CWE-416
5.0
2019-01-11 CVE-2019-6138 Memory Leak vulnerability in Mz-Automation Libiec61850 1.3.1
An issue has been found in libIEC61850 v1.3.1.
network
low complexity
mz-automation CWE-401
5.0
2019-01-11 CVE-2019-6137 NULL Pointer Dereference vulnerability in Mz-Automation Lib60870 2.1.1
An issue was discovered in lib60870 2.1.1.
network
low complexity
mz-automation CWE-476
5.0
2019-01-11 CVE-2019-6136 Unspecified vulnerability in Mz-Automation Libiec61850 1.3.1
An issue has been found in libIEC61850 v1.3.1.
network
low complexity
mz-automation
5.0
2019-01-11 CVE-2019-6135 Memory Leak vulnerability in Mz-Automation Libiec61850 1.3.1
An issue has been found in libIEC61850 v1.3.1.
network
low complexity
mz-automation CWE-401
5.0
2018-11-09 CVE-2018-19122 NULL Pointer Dereference vulnerability in Mz-Automation Libiec61850 1.3
An issue has been found in libIEC61850 v1.3.
4.3