What is CVE-2026-13198?
This is a 'Race Condition' vulnerability discovered in the event notification functionality of KUNBUS piControl version 2.6.2. A local authenticated attacker can exploit this flaw to corrupt kernel heap memory. Applying the security update released by the vendor is recommended.
Azərbaycanca: Bu, KUNBUS piControl v2.6.2 proqram təminatının hadisə bildiriş funksionallığında aşkarlanan 'Race Condition' zəifliyidir. Yerli autentifikasiya olunmuş təcavüzkar bu zəiflikdən istifadə edərək kernel yaddaşını korlaya bilər. İstehsalçı tərəfindən buraxılmış təhlükəsizlik yeniləməsi tətbiq edilməlidir.
Related CVEs
link basis: shared vendors: KUNBUS, Nozomi Networks Labs
FAQ2
Which software version is affected by CVE-2026-13198?
The vulnerability was discovered in version 2.6.2 of the KUNBUS piControl software.
What can an attacker achieve by successfully exploiting CVE-2026-13198?
A local authenticated attacker can exploit this Race Condition vulnerability to corrupt kernel heap memory.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.