CVE detail
CVE-2026-19108
A vulnerability was found in MZ Automation libiec61850 up to 1.6.1. The affected element is the function deleteDataSetValuesShadowBuffer of the file src/iec61850/server/mms_mapping/reporting.c of the component URCB Revalidation. The manipulation results in use after free. The attack needs to be approached locally. The exploit has been made public and could be used. Upgrading to version 1.6.2 is sufficient to fix this issue. The patch is identified as 486fd57f3aed65bb9d636ff00f9ddce2e450b168. Upgrading the affected component is advised.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 22.0 · diversity 6.5 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 8
- within the 30d window
- Peak daily
- 8
- highest bucket
Evidence
Source links by recency
8 source links · newest first
- https://vuldb.com/vuln/386569/ctivuldb.com
No excerpt available.
Exploitvuldb.comAug 6, 2026, 10:16 PM - https://vuldb.com/vuln/386569vuldb.com
No excerpt available.
Exploitvuldb.comAug 6, 2026, 10:16 PM - https://vuldb.com/submit/864520vuldb.com
No excerpt available.
Exploitvuldb.comAug 6, 2026, 10:16 PM - https://vuldb.com/cve/CVE-2026-19108vuldb.com
No excerpt available.
Exploitvuldb.comAug 6, 2026, 10:16 PM No excerpt available.
Exploitgithub.comAug 6, 2026, 10:16 PMNo excerpt available.
Exploitgithub.comAug 6, 2026, 10:16 PMNo excerpt available.
Exploitgithub.comAug 6, 2026, 10:16 PM- https://github.com/mz-automation/libiec61850/commit/486fd57f3aed65bb9d636ff00f9ddce2e450b168github.com
No excerpt available.
Exploitgithub.comAug 6, 2026, 10:16 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-18785CVSS 1.9 · Low
A vulnerability was determined in o6 open62541 ca356b088ada7dee824d1b4acd07c1ff07ce242b. Impacted is the function UA_Client_getRemoteDataTypes of the file examples/custom_datatype…
- CVE-2026-43810CVSS 9.8 · Critical
The issue was addressed with improved memory handling. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6, vis…
- CVE-2026-16367CVSS 10.0 · Critical
Sandbox escape due to invalid pointer in the Disability Access APIs component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.
- CVE-2026-15194CVSS 1.9 · Low
A security flaw has been discovered in Open5GS 2.7.7. This affects the function amf_context_final of the file src/amf/context.c of the component AMF. Performing a manipulation res…
- CVE-2026-14788CVSS 1.9 · Low
A security vulnerability has been detected in radareorg radare2 up to 6.1.6. Affected by this vulnerability is the function r_core_bin_load of the file libr/core/cfile.c. Such man…
- CVE-2026-14760CVSS 1.9 · Low
A weakness has been identified in radareorg radare2 up to 6.1.6. Impacted is the function r_core_seek_arch_bits of the file libr/core/disasm.c of the component regprofile Handler.…