High severity7.5NVD Advisory· Published Oct 9, 2026· Updated Oct 9, 2026
CVE-2026-75348
CVE-2026-75348
Description
An out-of-bounds read vulnerability exists in EIPStackGroup OpENer v2.3 and master up to commit 76b95cf in the EtherNet/IP TCP SendRRData Common Packet Format parser. The issue occurs in CreateCommonPacketFormatStructure() when it parses recognized optional socket address information items of type 0x8000 or 0x8001 without first validating that the remaining CPF buffer contains the complete fixed sockaddr structure. This allows a remote attacker to cause a denial of service.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: up to v2.3 and master before commit 76b95cf
Patches
Vulnerability mechanics
References
4News mentions
0No linked articles in our index yet.