MZ Automation libIEC61850
Multiple buffer overflow and memory safety vulnerabilities exist in libIEC61850 versions 1.0.0 through 1.6.1. These vulnerabilities allow unauthenticated network-adjacent attackers to crash IEC 61850 services or execute arbitrary code on affected devices. IEC 61850 is the standard protocol for communication between protection relays, intelligent electronic devices, and SCADA systems in electric utilities. Exploitation could disrupt protection functions, control visibility, and communication between critical grid devices.
- Network access to port 102 (IEC 61850 standard port) or the port where libIEC61850 is listening
- No authentication required
- Device running vulnerable libIEC61850 version 1.0.0 through 1.6.1
Patching may require device reboot — plan for process interruption
/api/v1/advisories/4690375d-a6af-4126-acc9-b1491e51c014Get OT security insights every Tuesday
Advisory breakdowns, a weekly summary, and incident analyses for the people actually defending OT environments. Free, no account required.