Vulnerabilities (CVE)

Filtered by vendor Gmg137
Filtered by product Snap7-rs
Angry Yack Logo
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-15247 1 Gmg137 1 Snap7-rs 2026-02-24 7.5 HIGH 7.3 HIGH
A vulnerability was identified in gmg137 snap7-rs up to 153d3e8c16decd7271e2a5b2e3da4d6f68589424. Affected by this issue is the function snap7_rs::client::S7Client::download of the file client.rs. Such manipulation leads to heap-based buffer overflow. The attack can be executed remotely. The exploit is publicly available and might be used. This product implements a rolling release for ongoing delivery, which means version information for affected or updated releases is unavailable. The project w ...

Show More

CVE-2025-14673 1 Gmg137 1 Snap7-rs 2026-02-24 7.5 HIGH 7.3 HIGH
A vulnerability has been found in gmg137 snap7-rs up to 1.142.1. Affected is the function snap7_rs::client::S7Client::as_ct_write of the file /tests/snap7-rs/src/client.rs. The manipulation leads to heap-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
CVE-2025-14672 1 Gmg137 1 Snap7-rs 2026-02-24 7.5 HIGH 7.3 HIGH
A flaw has been found in gmg137 snap7-rs up to 1.142.1. This impacts the function TSnap7MicroClient::opWriteArea of the file s7_micro_client.cpp. Executing a manipulation can lead to heap-based buffer overflow. It is possible to launch the attack remotely. The exploit has been published and may be used.
CVE-2025-7616 1 Gmg137 1 Snap7-rs 2026-01-13 5.2 MEDIUM 5.5 MEDIUM
A vulnerability, which was classified as critical, has been found in gmg137 snap7-rs up to 1.142.1. Affected by this issue is the function pthread_cond_destroy of the component Public API. The manipulation leads to memory corruption. The exploit has been disclosed to the public and may be used.