CVE-2026-13196

CVE-2026-13196CVE-2026-13196

Description

Nozomi Networks Labs identified a CWE-787: Out-of-bounds Write vulnerability in the process-image management functionality of KUNBUS piControl in version 2.6.2 that allows a local authenticated attacker with device configuration access to write attacker-controlled data outside the bounds of the process-image buffer and corrupt adjacent kernel memory, resulting in kernel memory corruption and denial of service, by supplying crafted device configuration data and crafted input through the piControl character device.

Scoring

Last modified2026-08-14
Sourced from NVD. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.