CVE-2022-2972: Mz-Automation LIBIEC61850

Critical severity, CVSS 9.8. EPSS: 1.6% chance of exploitation in the next 30 days.

MZ Automation's libIEC61850 (versions 1.4 and prior; version 1.5 prior to commit a3b04b7bc4872a5a39e5de3fdc5fbde52c09e10e) is vulnerable to a stack-based buffer overflow, which could allow an attacker to crash the device or remotely execute arbitrary code.

Affected products

Published 2022-09-23. Last modified 2026-06-17.