What is CVE-2026-66369?
CVE-2026-66369 describes an off-by-one boundary-handling flaw in the GOOSE parser. It can be triggered by a single unauthenticated Layer-2 multicast frame on the process bus, causing the parser to misalign its internal buffer position. Affected systems should be patched immediately with vendor-provided updates.
Azərbaycanca: CVE-2026-66369 GOOSE parser-də off-by-one sərhəd xətasıdır. Bu zəiflik process bus üzərindən göndərilən, autentifikasiya tələb etməyən bir Layer-2 multicast çərçivəsi ilə istismar edilə bilər. Təsirə məruz qalan sistemlərin dərhal istehsalçı tərəfindən təqdim edilən yeniləmələrlə patching edilməsi tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-787
FAQ2
Does exploiting CVE-2026-66369 require authentication?
No, it can be triggered by a single unauthenticated Layer-2 multicast frame.
What type of boundary error is CVE-2026-66369?
It is an off-by-one boundary-handling flaw in the GOOSE parser.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.