Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 09 Oct 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | EIPStackGroup OpENer Buffer Over‑Read in Common Packet Format Parser Causing DoS |
Fri, 09 Oct 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Out‑of‑Bounds Read in OpENer EtherNet/IP Packet Parser Leading to DoS | |
| Weaknesses | CWE-788 |
Fri, 09 Oct 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Eipstackgroup
Eipstackgroup opener |
|
| Weaknesses | CWE-125 | |
| Vendors & Products |
Eipstackgroup
Eipstackgroup opener |
Fri, 09 Oct 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Out‑of‑Bounds Read in OpENer EtherNet/IP Packet Parser Leading to DoS | |
| Weaknesses | CWE-788 |
Fri, 09 Oct 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 09 Oct 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An out-of-bounds read vulnerability exists in EIPStackGroup OpENer v2.3 and master up to commit 76b95cf in the EtherNet/IP TCP SendRRData Common Packet Format parser. The issue occurs in CreateCommonPacketFormatStructure() when it parses recognized optional socket address information items of type 0x8000 or 0x8001 without first validating that the remaining CPF buffer contains the complete fixed sockaddr structure. This allows a remote attacker to cause a denial of service. | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-10-09T17:52:24.681Z
Reserved: 2026-08-17T00:00:00.000Z
Link: CVE-2026-75348
Updated: 2026-10-09T16:56:32.395Z
Status : Deferred
Published: 2026-10-09T16:17:29.730
Modified: 2026-10-09T18:17:13.893
Link: CVE-2026-75348
No data.
OpenCVE Enrichment
Updated: 2026-10-09T21:30:12Z
-
CWE-125
Out-of-bounds Read