Unknown · Libiec61850 · CVE-2026-19259
**Name of the Vulnerable Software and Affected Versions**
libiec61850 versions prior to 1.6.2
**Description**
A heap-based buffer overflow exists in the MMS Protocol Workflow component within the `MmsMapping varAccessSpecToObjectReference()` function located in the `src/iec61850/common/iec61850 common.c` file. This issue occurs when the `GetNamedVariableListAttributesResponse.itemId` argument is manipulated, requiring local access to execute the attack.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
As a temporary workaround, consider restricting the use of the `MmsMapping varAccessSpecToObjectReference()` function to minimize the risk of exploitation.