yocto ▾
›
kirkstone ▾
›
vulnerability
›
CVE-2019-14462
Component Overview
Vulnerability Overview
Name
CVE-2019-14462
Source
NVD (
link
)
Debian (
link
)
Description
An issue was discovered in libmodbus before 3.0.7 and 3.1.x before 3.1.5. There is an out-of-bounds read for the MODBUS_FC_WRITE_MULTIPLE_COILS case, aka VD-1302.
CWEs
CWE-125
Published Date
Jul 31, 2019
Updated Date
Jun 17, 2026
Workaround
-
Advisories
https://github.com/stephane/libmodbus/commit/5ccdf5ef79d742640355d1132fa9e2abc7fbaefc
Patch
https://libmodbus.org/2019/stable-and-development-releases/
Release Notes
https://lists.debian.org/debian-lts-announce/2021/11/msg00020.html
Mailing List
https://github.com/stephane/libmodbus/commit/5ccdf5ef79d742640355d1132fa9e2abc7fbaefc
Patch
https://libmodbus.org/2019/stable-and-development-releases/
Release Notes
https://lists.debian.org/debian-lts-announce/2021/11/msg00020.html
Mailing List
Analysis
#
Affected Component
Analysis
Vulnerability Ratings
#
9.1
CVSSv31
6.4
CVSSv2
Others affected components
#
Name
Project
Project Version
Version
Status
libmodbus
buildroot
2025.02.x
3.1.11
Not Affected
libmodbus
buildroot
master
3.1.12
Not Affected
libmodbus
openwrt
master
3.1.12-r1
Not Affected
libmodbus
openwrt
openwrt-25.12
3.1.12-r1
Not Affected
libmodbus
yocto
master
3.2.0
Not Affected
libmodbus
yocto
scarthgap
3.1.10
Not Affected