A remote attacker with user privileges can exploit a stack buffer overflow in gdv-serverconfig to gain full system access as root.
References
| Link | Resource |
|---|---|
| https://www.certvde.com/en/advisories/VDE-2026-039/ | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
08 Jun 2026, 17:16
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Mbs-solutions double-x Can
Mbs-solutions double-x M-bus Mbs-solutions double-a X-link Mbs-solutions single-x Mbs-solutions triple-x Knx\+lon Mbs-solutions triple-x Knx\+m-bus Mbs-solutions Mbs-solutions double-x X-link Mbs-solutions double-x Lon Mbs-solutions double-x Profinet Mbs-solutions single-a Mbs-solutions triple-x Profinet\+lon Mbs-solutions triple-x Profinet\+knx Mbs-solutions triple-x Profinet\+dali Mbs-solutions triple-x Profinet\+m-bus Mbs-solutions double-a Profibus Mbs-solutions double-x Dali Mbs-solutions double-x Knx Mbs-solutions universal Gateway Firmware Mbs-solutions triple-x Knx\+dali |
|
| References | () https://www.certvde.com/en/advisories/VDE-2026-039/ - Vendor Advisory | |
| CPE | cpe:2.3:h:mbs-solutions:double-x_x-link:-:*:*:*:*:*:*:* cpe:2.3:h:mbs-solutions:double-x_knx:-:*:*:*:*:*:*:* cpe:2.3:h:mbs-solutions:double-x_profinet:-:*:*:*:*:*:*:* cpe:2.3:o:mbs-solutions:universal_gateway_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:mbs-solutions:triple-x_knx\+dali:-:*:*:*:*:*:*:* cpe:2.3:h:mbs-solutions:double-a_profibus:-:*:*:*:*:*:*:* cpe:2.3:h:mbs-solutions:triple-x_profinet\+knx:-:*:*:*:*:*:*:* cpe:2.3:h:mbs-solutions:triple-x_knx\+lon:-:*:*:*:*:*:*:* cpe:2.3:h:mbs-solutions:single-a:-:*:*:*:*:*:*:* cpe:2.3:h:mbs-solutions:double-x_dali:-:*:*:*:*:*:*:* cpe:2.3:h:mbs-solutions:double-x_m-bus:-:*:*:*:*:*:*:* cpe:2.3:h:mbs-solutions:single-x:-:*:*:*:*:*:*:* cpe:2.3:h:mbs-solutions:triple-x_profinet\+m-bus:-:*:*:*:*:*:*:* cpe:2.3:h:mbs-solutions:triple-x_profinet\+dali:-:*:*:*:*:*:*:* cpe:2.3:h:mbs-solutions:double-x_can:-:*:*:*:*:*:*:* cpe:2.3:h:mbs-solutions:double-a_x-link:-:*:*:*:*:*:*:* cpe:2.3:h:mbs-solutions:triple-x_profinet\+lon:-:*:*:*:*:*:*:* cpe:2.3:h:mbs-solutions:double-x_lon:-:*:*:*:*:*:*:* cpe:2.3:h:mbs-solutions:triple-x_knx\+m-bus:-:*:*:*:*:*:*:* |
03 Jun 2026, 13:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-06-03 13:16
Updated : 2026-06-08 17:16
NVD link : CVE-2026-35085
Mitre link : CVE-2026-35085
CVE.ORG link : CVE-2026-35085
JSON object : View
Products Affected
mbs-solutions
- double-a_profibus
- single-a
- double-x_knx
- double-x_m-bus
- double-x_lon
- triple-x_profinet\+lon
- double-x_profinet
- double-a_x-link
- double-x_dali
- triple-x_profinet\+m-bus
- single-x
- triple-x_profinet\+dali
- triple-x_knx\+dali
- triple-x_profinet\+knx
- universal_gateway_firmware
- triple-x_knx\+lon
- triple-x_knx\+m-bus
- double-x_x-link
- double-x_can
CWE
CWE-121
Stack-based Buffer Overflow
