PT-2026-58052 · Unknown · 5380/5480/5580 Controllers

CVE-2025-11698

·

Published

2026-07-14

·

Updated

2026-07-14

CVSS v4.0

9.2

Critical

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:H
Name of the Vulnerable Software and Affected Versions 5380/5480/5580 controllers boot firmware versions prior to 1.072
Description A buffer copy issue without input size validation exists in the boot firmware. This allows a remote attacker to write invalid file data to the controller, potentially causing the device to enter a major non-recoverable fault (MNRF), which is a critical system failure state that renders the device inoperable.
Recommendations Update boot firmware to version 1.072 or later.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-09923
CVE-2025-11698

Affected Products

5380/5480/5580 Controllers