Junglewise Threat Intelligence

CVE-2026-76989: liftoff-sr CIPster out-of-bounds read in TCP encapsulation

CVE-2026-76989 · Severity: medium · CVSS 5.3 · Published 2026-08-20

Technologies: Liftoff-Sr CIPster.

Executive brief

CIPster is an EtherNet/IP protocol stack library used in industrial I/O adapter devices. A flaw in the TCP encapsulation receive path allows an attacker to read memory beyond intended boundaries, potentially exposing sensitive data or causing a denial of service on affected devices.

Technical details

An out-of-bounds read vulnerability exists in the TCP Encapsulation Receive Path component (source/src/enet_encap/encap.cc) of CIPster. The vulnerability is triggered through remote network interaction without requiring authentication. The out-of-bounds read could allow an attacker to access adjacent memory regions, potentially leaking sensitive information or triggering a crash. A patch has been identified (commit e8e9dba09bf56962807d3504b783ccdb6287f3e4) and deployment is recommended.

Affected products

  • liftoff-sr CIPster 1802525be27d33e19a9a83c163e331a1d13b1892 and earlier

Timeline

  • 2026-08-20: disclosed
  • 2026-08-20: patched: Patch available as commit e8e9dba09bf56962807d3504b783ccdb6287f3e4

References