JLSEC-2026-1252

Source
https://github.com/JuliaLang/SecurityAdvisories.jl/blob/main/advisories/published/2026/JLSEC-2026-1252.md
Import Source
https://github.com/JuliaLang/SecurityAdvisories.jl/tree/generated/osv/2026/JLSEC-2026-1252.json
JSON Data
https://api.test.osv.dev/v1/vulns/JLSEC-2026-1252
Upstream
  • EUVD-2024-53894
  • GHSA-96xh-5wq4-m4cc
Published
2026-08-11T14:12:22.442Z
Modified
2026-08-11T14:29:19.635067625Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
Stack-based Buffer Overflow vulnerability in libmodbus v3.1.10 allows to overflow the buffer...
Details

Stack-based Buffer Overflow vulnerability in libmodbus v3.1.10 allows to overflow the buffer allocated for the Modbus response if the function tries to reply to a Modbus request with an unexpected length.

Database specific
{
    "license": "CC-BY-4.0",
    "sources": [
        {
            "id": "CVE-2024-10918",
            "published": "2025-02-27T12:15:33.807Z",
            "html_url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10918",
            "modified": "2026-08-01T19:16:41.023Z",
            "database_specific": {
                "status": "Modified"
            },
            "imported": "2026-08-11T13:56:40.877Z",
            "url": "https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2024-10918"
        },
        {
            "id": "GHSA-96xh-5wq4-m4cc",
            "published": "2025-02-27T12:30:55Z",
            "imported": "2026-08-11T13:56:43.797Z",
            "modified": "2026-08-01T21:31:27Z",
            "html_url": "https://github.com/advisories/GHSA-96xh-5wq4-m4cc",
            "url": "https://api.github.com/advisories/GHSA-96xh-5wq4-m4cc"
        },
        {
            "published": "2025-02-27T11:44:25Z",
            "id": "EUVD-2024-53894",
            "imported": "2026-08-11T13:56:42.230Z",
            "modified": "2026-08-01T18:20:11Z",
            "html_url": "https://euvd.enisa.europa.eu/vulnerability/EUVD-2024-53894",
            "url": "https://euvdservices.enisa.europa.eu/api/enisaid?id=EUVD-2024-53894"
        }
    ]
}
References

Affected packages

Julia / LibModbus_jll

Package

Name
LibModbus_jll
Purl
pkg:julia/LibModbus_jll?uuid=f28bf708-275a-52ef-9ea6-4821c17573f9

Affected ranges

Type
SEMVER
Events
Introduced
3.1.10+0
Fixed
3.1.12+0

Database specific

source
"https://github.com/JuliaLang/SecurityAdvisories.jl/tree/generated/osv/2026/JLSEC-2026-1252.json"