CVE-2026-56758

EUVD-2026-51339
The ACSE layer contains a flaw in the processing of AARQ PDUs during MMS
 connection establishment. When parsing certain fields within the 
calling AP title, an attacker controlled length value of zero or one may
 cause the parser to read past the end of a heap buffer.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
icscertCNA
6.5 MEDIUM
ADJACENT_NETWORK
LOW
NONE
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 7%
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
VendorProductVersionSource
mz-automationlibiec61850
𝑥
< 1.6.2
CNA