MEDIUM 5.5 NVD
CVE-2026-76988
A weakness has been identified in liftoff-sr CIPster 1802525be27d33e19a9a83c163e331a1d13b1892. This affects the function CipConnMgrClass::forward_open of the fi
A weakness has been identified in liftoff-sr CIPster 1802525be27d33e19a9a83c163e331a1d13b1892. This affects the function CipConnMgrClass::forward_open of the file cipconnectionmanager.cc of the component ForwardOpen Handler. Executing a manipulation of the argument product_code_ can lead to out-of-bounds read. It is possible to launch the attack remotely. The exploit has been made available to the public and could be used for attacks. This patch is called ea870a274bf68dfaa3f511f20e2fff6778fb7b74. A patch should be applied to remediate this issue.
References
- https://github.com/liftoff-sr/CIPster/
- https://github.com/liftoff-sr/CIPster/commit/ea870a274bf68dfaa3f511f20e2fff6778fb7b74
- https://github.com/liftoff-sr/CIPster/issues/45
- https://vuldb.com/cve/CVE-2026-76988
- https://vuldb.com/submit/880102
This medium severity vulnerability with a CVSS score of 5.5 was published on 2026-08-20 via NVD.
vulnfeed aggregates 11502 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.