Stack Buffer Overflow in gdv-serverconfig Affects Vendor’s Product
CVE-2026-35085

8.7HIGH

Key Information:

Vendor

Mbs

Vendor
CVE Published:
3 June 2026

What is CVE-2026-35085?

A stack buffer overflow vulnerability in the gdv-serverconfig component allows an attacker with user privileges to exploit this flaw. By sending crafted input, the attacker can corrupt the memory of the vulnerable process, potentially leading to full system access with root privileges. This vulnerability highlights the importance of rigorous input validation and security measures to protect against unauthorized access.

Affected Version(s)

Double-A Profibus V1_0_0_0

Double-A x-link V1_0_0_0

Double-X CAN V1_0_0_0

References

CVSS V4

Score:
8.7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Adrien Rey from Cyber Defense Campus Zurich
Daniel Hulliger from Armasuisse
.