CVE-2026-35084
Stack buffer overflow in method dali-devconfig
In short
A flaw in the dali-devconfig tool allows someone with user access to overflow a memory buffer on the system stack, potentially taking complete control of the computer as the administrator (root). This is dangerous because it bypasses normal security restrictions.
Technical detail
Stack buffer overflow in dali-devconfig method CWE-121 allows authenticated local attackers to overwrite stack memory, potentially achieving arbitrary code execution with root privileges. The vulnerability requires user-level access; successful exploitation can lead to complete system compromise through stack frame corruption and return address manipulation.
Summary generated and translated by AI from the official description.
A remote attacker with user privileges can exploit a stack buffer overflow in dali-devconfig to gain full system access as root.
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Affected products
MBS · Double-A ProfibusMBS · Double-A x-linkMBS · Double-X CANMBS · Double-X DALIMBS · Double-X KNXMBS · Double-X LONMBS · Double-X M-BusMBS · Double-X PROFINETMBS · Double-X x-linkMBS · Single-AMBS · Single-XMBS · Triple-X KNX+DALIMBS · Triple-X KNX+LONMBS · Triple-X KNX+M-BusMBS · Triple-X PROFINET+DALIMBS · Triple-X PROFINET+KNXMBS · Triple-X PROFINET+LONMBS · Triple-X PROFINET+M-BusWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →