What is CVE-2026-61893?
CVE-2026-61893 is a heap buffer over-read vulnerability in the IEC 60870-5-104 protocol triggered by a crafted I-frame with TypeID 104 (C_TS_NA_1) and an inflated object count. The issue occurs in the TestCommand_getFromBuffer function, causing it to read one byte past the allocated message buffer. Immediate patching is required to prevent potential exploitation.
Azərbaycanca: CVE-2026-61893 IEC 60870-5-104 protokolunda xüsusi hazırlanmış I-frame vasitəsilə heap buffer over-read zəifliyidir. Təsirə məruz qalan sistemlər TypeID 104 (C_TS_NA_1) mesajlarını işləyərkən TestCommand_getFromBuffer funksiyasında yaddaş oxuma xətası baş verir. Təcili olaraq vendor tərəfindən təqdim olunan təhlükəsizlik yeniləməsi tətbiq edilməlidir.
Related CVEs
link basis: same weakness class CWE-125
FAQ2
In which protocol and function does CVE-2026-61893 occur?
The vulnerability is a heap buffer over-read flaw in the IEC 60870-5-104 protocol, specifically occurring in the TestCommand_getFromBuffer function when processing a crafted I-frame.
What message type is used to trigger CVE-2026-61893?
The vulnerability is triggered by a crafted I-frame with TypeID 104 (C_TS_NA_1) and an inflated object count.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.