THREAT OPS › Threat News › [NVD] CVE-2026-19108 (MEDIUM 5.3) — A vulnerability was found in MZ Automation libiec61850 up to 1.6.1. The affected element is the function deleteDataSetValuesShadowBuffer of the file src/iec61850/server/mms_mapping/reporting.c of the component URCB Revalidation. The manipulation results in use after free. The att
[NVD] CVE-2026-19108 (MEDIUM 5.3) — A vulnerability was found in MZ Automation libiec61850 up to 1.6.1. The affected element is the function deleteDataSetValuesShadowBuffer of the file src/iec61850/server/mms_mapping/reporting.c of the component URCB Revalidation. The manipulation results in use after free. The att
CVE-2026-19108 CVSS: 5.3 MEDIUM Published: 2026-08-06T22:16:55.057
A vulnerability was found in MZ Automation libiec61850 up to 1.6.1. The affected element is the function deleteDataSetValuesShadowBuffer of the file src/iec61850/server/mms_mapping/reporting.c of the component URCB Revalidation. The manipulation results in use after free. The attack needs to be approached locally. The exploit has
Indicators of compromise
- 486fd57f3aed65bb9d636ff00f9ddce2e450b168sha1
- CVE-2026-19108cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-19108