Executive brief
CIPster is an EtherNet/IP protocol stack library used in industrial I/O adapter devices. A flaw in the TCP encapsulation receive path allows an attacker to read memory beyond intended boundaries, potentially exposing sensitive data or causing a denial of service on affected devices.
Technical details
An out-of-bounds read vulnerability exists in the TCP Encapsulation Receive Path component (source/src/enet_encap/encap.cc) of CIPster. The vulnerability is triggered through remote network interaction without requiring authentication. The out-of-bounds read could allow an attacker to access adjacent memory regions, potentially leaking sensitive information or triggering a crash. A patch has been identified (commit e8e9dba09bf56962807d3504b783ccdb6287f3e4) and deployment is recommended.
Affected products
- liftoff-sr CIPster 1802525be27d33e19a9a83c163e331a1d13b1892 and earlier
Timeline
- 2026-08-20: disclosed
- 2026-08-20: patched: Patch available as commit e8e9dba09bf56962807d3504b783ccdb6287f3e4