汇总 libmodbus 相关全部产品的 CVE 与安全漏洞情报,包括 CVSS、EPSS、公开时间与漏洞情报数据。
历史漏洞主要涉及 缓冲区溢出与内存损坏 等问题,部分漏洞可能导致 应用崩溃,并影响 软件部署与生产负载 相关场景。
相关漏洞数据主要来源于公开漏洞披露与安全公告,可用于评估历史漏洞暴露面与修复优先级。
| CVE | 摘要 | 来源 | 最高 CVSS | EPSS % | 公开时间 | 更新时间 |
|---|---|---|---|---|---|---|
| CVE-2024-10918 | Stack-based Buffer Overflow vulnerability in libmodbus v3.1.10 allows to overflow the buffer allocated for the Modbus response if the function tries to reply to a Modbus request with an unexpected length. | [email protected] | 4.8 | 0.39% | 2025-02-27 | 2025-11-03 |
| CVE-2024-36845 | An invalid pointer in the modbus_receive() function of libmodbus v3.1.6 allows attackers to cause a Denial of Service (DoS) via a crafted message sent to the unit-test-server. | [email protected] | 4.3 | 0.47% | 2024-05-31 | 2025-11-03 |
| CVE-2024-36844 | libmodbus v3.1.6 was discovered to contain a use-after-free via the ctx->backend pointer. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted message sent to the unit-test-server. | [email protected] | 7.5 | 0.61% | 2024-05-31 | 2025-11-03 |
| CVE-2024-36843 | libmodbus v3.1.6 was discovered to contain a heap overflow via the modbus_mapping_free() function. | [email protected] | 7.5 | 0.75% | 2024-05-31 | 2025-11-03 |
| CVE-2024-34244 | libmodbus v3.1.10 is vulnerable to Buffer Overflow via the modbus_write_bits function. This issue can be triggered when the function is fed with specially crafted input, which leads to out-of-bounds read and can potentially cause a crash or other unintended behaviors. | [email protected] | 7.5 | 0.52% | 2024-05-08 | 2025-05-05 |
| CVE-2023-26793 | libmodbus v3.1.10 has a heap-based buffer overflow vulnerability in read_io_status function in src/modbus.c. | [email protected] | 9.8 | 0.73% | 2024-05-01 | 2025-05-05 |
| CVE-2022-0367 | A heap-based buffer overflow flaw was found in libmodbus in function modbus_reply() in src/modbus.c. | [email protected] | 7.8 | 0.43% | 2022-08-29 | 2025-11-03 |
| CVE-2019-14463 | An issue was discovered in libmodbus before 3.0.7 and 3.1.x before 3.1.5. There is an out-of-bounds read for the MODBUS_FC_WRITE_MULTIPLE_REGISTERS case, aka VD-1301. | [email protected] | 9.1 | 1.93% | 2019-07-31 | 2024-11-21 |
| CVE-2019-14462 | An issue was discovered in libmodbus before 3.0.7 and 3.1.x before 3.1.5. There is an out-of-bounds read for the MODBUS_FC_WRITE_MULTIPLE_COILS case, aka VD-1302. | [email protected] | 9.1 | 1.98% | 2019-07-31 | 2024-11-21 |