Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
MZ Automation recommends updating to the latest build of the libIEC61850 standard. Documentation can be found at https://github.com/mz-automation/libiec61850. https://github.com/mz-automation/libiec61850
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 23 Jul 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A NULL pointer dereference in the L2 GOOSE and R-GOOSE shared parser, which may allow a network-adjacent attacker to crash a subscribing application by sending a crafted GOOSE frame containing a malformed TLV value. | |
| Title | Improper Handling of Syntactically Invalid Structure in MZ Automation libIEC61850 | |
| Weaknesses | CWE-228 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2026-07-23T20:50:42.198Z
Reserved: 2026-06-09T20:01:29.578Z
Link: CVE-2026-50103
No data.
No data.
No data.
OpenCVE Enrichment
No data.