CVE-2026-66364
Last modified
CVE-2026-66364 is a high-severity vulnerability rated 7.1/10 on the CVSS scale. The GOOSE payload parser contains a boundary handling flaw that can be triggered by a single unauthenticated Layer 2 multicast frame on the process bus. When processing specific payload fields, an attacker controlled inner element length may exceed its enclosing length, causing the parser to over read by one byte. EPSS estimates a 0.18% chance of exploitation in the next 30 days.
Description
The GOOSE payload parser contains a boundary handling flaw that can be triggered by a single unauthenticated Layer 2 multicast frame on the process bus. When processing specific payload fields, an attacker controlled inner element length may exceed its enclosing length, causing the parser to over read by one byte. This out-of-bounds read reliably terminates the subscriber process, resulting in a denial-of-service condition.
Metrics
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| MZ Automation GmbH | libiec61850 | < 1.6.2 |
References
Timeline
- Published
- Last Modified
- Status
- Received
Frequently Asked Questions
What is CVE-2026-66364?
How severe is CVE-2026-66364?
How do I fix CVE-2026-66364?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-6634A weakness has been identified in usememos memos up to 0.22.…6.3
- CVE-2026-66344NetKids iMark, provided by Integrated Systems Technologies, …6.7
- CVE-2026-66349The MMS server connection handler contains a flaw in its pro…6.9
- CVE-2026-6635A security vulnerability has been detected in rowboatlabs ro…7.3
- CVE-2026-6636A vulnerability was detected in p2r3 convert up to 6998584ac…4.3
- CVE-2026-66360The ISO Presentation layer contains a flaw in the handling o…8.7
- CVE-2026-66369The GOOSE parser contains an off-by-one boundary-handling fl…7.1
- CVE-2026-6637Stack buffer overflow in PostgreSQL module "refint" allows a…8.8
- CVE-2026-66370URL Redirection to Untrusted Site ('Open Redirect') vulnerab…4.8
- CVE-2026-66373Redis before 8.8.0, in the unusual case where an authenticat…7.5
- CVE-2026-66374Knot Resolver before 6.4.1 allows remote code execution via …8.1
- CVE-2026-6638SQL injection in PostgreSQL logical replication ALTER SUBSCR…8.8
Are you affected by CVE-2026-66364?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
