Executive brief
Teltonika RUTOS devices include a Modbus gateway service (modbusgwd) that processes industrial automation protocol requests. An unauthenticated remote attacker can send specially crafted Modbus TCP data to trigger a heap buffer overflow, causing the service to crash and disrupting industrial device communication and control.
Technical details
A heap-based buffer overflow exists in the modbusgwd component of Teltonika RUTOS due to improper handling of Modbus TCP request data. The vulnerability can be triggered remotely by an unauthenticated attacker with network access to the affected service, without requiring authentication or user interaction. Exploitation results in denial of service through service crash. The vulnerability was reported and published by Teltonika Networks on 2026-08-13, though no patch details or CVSS score have been publicly disclosed.
Affected products
- Teltonika Networks RUTOS <UNKNOWN>
Timeline
- 2026-08-13: disclosed