PT-2025-46689 · Unknown · Airpig2011 Iec104

Published

2025-11-12

·

Updated

2025-11-13

·

CVE-2025-63927

CVSS v3.1

4.0

Medium

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions airpig2011 IEC104 versions through Commit be6d841 (2019-07-08)
Description A heap-use-after-free issue exists in the software. During multi-threaded client execution, the Iec10x Scheduled function can access already freed memory, potentially leading to program crashes or undefined behavior. This could be exploited to cause a denial-of-service or memory corruption.
Recommendations Update to a version later than Commit be6d841 (2019-07-08).

Exploit

Fix

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2025-63927

Affected Products

Airpig2011 Iec104