← Back to Feed

MZ Automation libIEC61850

CVE-2026-50039CVE-2026-49035

July 23, 2026 · CISA (US-CERT) · Severity: CRITICAL

This CISA advisory covers multiple vulnerabilities in MZ Automation libIEC61850, including stack and heap buffer overflows, null pointer dereference, and improper invalid structure handling. Successful exploitation could allow an unauthenticated network-adjacent attacker to crash critical IEC 61850 services or execute arbitrary code. The vendor recommends updating to the latest build of libIEC61850.

Key Takeaways

  • MZ Automation libIEC61850 versions 1.0.0 through 1.6.1 contain multiple buffer overflow and crash vulnerabilities.
  • Unauthenticated network-adjacent attackers can disrupt IEC 61850 protection, visibility, and control functions.
  • CVE-2026-49035 enables remote code execution when ASLR is disabled; otherwise memory corruption or denial of service occurs.
☕ Buy a Coffee