Vulnerability record · CVE-2020-15158 · published 26 August 2020
CVE-2020-15158: Mz-automation libiec61850 memory buffer overflow vulnerability
Mz Automation · Libiec61850
In libIEC61850 before version 1.4.3, when a message with COTP message length field with value < 4 is received an integer underflow will happen leading to heap buffer overflow. This can cause an application crash or on some platforms even the execution of remote code. If your application is used in open networks or there are untrusted nodes in the network it is highly recommend to apply the patch. This was patched with commit 033ab5b. Users of version 1.4.x should upgrade to version 1.4.3 when available. As a workaround changes of commit 033ab5b can be applied to older versions.
Description
In libIEC61850 before version 1.4.3, when a message with COTP message length field with value < 4 is received an integer underflow will happen leading to heap buffer overflow. This can cause an application crash or on some platforms even the execution of remote code. If your application is used in open networks or there are untrusted nodes in the network it is highly recommend to apply the patch. This was patched with commit 033ab5b. Users of version 1.4.x should upgrade to version 1.4.3 when available. As a workaround changes of commit 033ab5b can be applied to older versions.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected products
1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
| Link | Tags |
|---|---|
| https://github.com/mz-automation/libiec61850/commit/033ab5b6488250c8c3b838f25a7cbc3e099230bb | PatchThird Party Advisory |
| https://github.com/mz-automation/libiec61850/issues/250 | Third Party Advisory |
| https://github.com/mz-automation/libiec61850/security/advisories/GHSA-pq77-fmf7-hjw8 | Third Party Advisory |
| https://github.com/mz-automation/libiec61850/commit/033ab5b6488250c8c3b838f25a7cbc3e099230bb | PatchThird Party Advisory |
| https://github.com/mz-automation/libiec61850/issues/250 | Third Party Advisory |
| https://github.com/mz-automation/libiec61850/security/advisories/GHSA-pq77-fmf7-hjw8 | Third Party Advisory |
Track CVE-2020-15158 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2020-15158), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.