CVE-2022-2972: Mz-Automation LIBIEC61850
Critical severity, CVSS 9.8. EPSS: 1.6% chance of exploitation in the next 30 days.
MZ Automation's libIEC61850 (versions 1.4 and prior; version 1.5 prior to commit a3b04b7bc4872a5a39e5de3fdc5fbde52c09e10e) is vulnerable to a stack-based buffer overflow, which could allow an attacker to crash the device or remotely execute arbitrary code.
Affected products
- Mz-Automation LIBIEC61850: before 1.5.0 (fixed in 1.5.0)
Published 2022-09-23. Last modified 2026-06-17.