Un problema è stato trovato in libIEC61850 v1.3. Si tratta di un NULL pointer dereference in ClientDataSet_getValues in client / ied_connection.c. |
https://github.com/fouzhe/security/tree/master/libiec61850#segv-in-function-clientdataset_getvalues https://github.com/mz-automation/libiec61850/issues/82 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-18937 |
Vulnerabilità: CVE-2018-18937
