Vulnerabilities
9 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2024-10918 | Stack-based Buffer Overflow vulnerability in libmodbus v3.1.10 allows to overflow the buffer allocated for the Modbus response if the function tries to reply to Stack-based Buffer Overflow vulnerability in libmodbus v3.1.10 allows to overflow the buffer allocated for the Modbus response if the function tries to reply to a Modbus request with an unexpected length. NVD description · AI analysis pending | 9.8 | <1% |
| — | ||
| CVE-2024-36843 | libmodbus v3.1.6 was discovered to contain a heap overflow via the modbus_mapping_free() function. libmodbus v3.1.6 was discovered to contain a heap overflow via the modbus_mapping_free() function. NVD description · AI analysis pending | 7.5 group max | <1% | PoC ×2 |
| — | |
| CVE-2024-34244 | libmodbus v3.1.10 is vulnerable to Buffer Overflow via the modbus_write_bits function. libmodbus v3.1.10 is vulnerable to Buffer Overflow via the modbus_write_bits function. This issue can be triggered when the function is fed with specially crafted input, which leads to out-of-bounds read and can potentially cause a crash or other unintended behaviors. NVD description · AI analysis pending | 7.5 | <1% | PoC |
| — | |
| CVE-2023-26793 | libmodbus v3.1.10 has a heap-based buffer overflow vulnerability in read_io_status function in src/modbus.c. libmodbus v3.1.10 has a heap-based buffer overflow vulnerability in read_io_status function in src/modbus.c. NVD description · AI analysis pending | 9.8 | <1% | PoC |
| — | |
| CVE-2022-0367 | A heap-based buffer overflow flaw was found in libmodbus in function modbus_reply() in src/modbus.c. A heap-based buffer overflow flaw was found in libmodbus in function modbus_reply() in src/modbus.c. NVD description · AI analysis pending | 7.8 | <1% | PoC |
| — | |
| CVE-2019-14462 +1 in the same advisory: …14463 | An issue was discovered in libmodbus before 3.0.7 and 3.1.x before 3.1.5. An issue was discovered in libmodbus before 3.0.7 and 3.1.x before 3.1.5. There is an out-of-bounds read for the MODBUS_FC_WRITE_MULTIPLE_COILS case, aka VD-1302. NVD description · AI analysis pending | 9.1 | 2% |
| — |