Out-of-Bounds Write Vulnerability in KUNBUS piControl Product by Nozomi Networks
CVE-2026-13196
7.3HIGH
What is CVE-2026-13196?
KUNBUS piControl, a product by Nozomi Networks, is vulnerable due to an out-of-bounds write issue within its process-image management functionality. An attacker with valid local access and device configuration permissions can exploit this flaw by sending crafted input through the piControl character device. This allows for the injection of malicious data outside the designated memory buffers, leading to potential kernel memory corruption and denial of service. Proper precautions are needed to secure configurations and monitor for any unauthorized changes.
Affected Version(s)
piControl 0 <= 2.6.2
