Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 14 Aug 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 14 Aug 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Nozomi Networks Labs identified a CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') vulnerability in the configuration and process-image management functionality of KUNBUS piControl in version 2.6.2 that allows a local authenticated attacker to trigger use-after-free and invalid pointer dereferences on kernel configuration objects, resulting in kernel memory corruption and denial of service, by issuing concurrent crafted requests through the piControl character device. | |
| Title | Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') in KUNBUS piControl | |
| Weaknesses | CWE-362 | |
| References |
| |
| Metrics |
cvssV4_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: Nozomi
Published:
Updated: 2026-08-14T19:45:18.566Z
Reserved: 2026-06-24T13:50:25.222Z
Link: CVE-2026-13197
Updated: 2026-08-14T19:45:12.951Z
Status : Received
Published: 2026-08-14T16:16:49.523
Modified: 2026-08-14T20:16:49.243
Link: CVE-2026-13197
No data.
OpenCVE Enrichment
Updated: 2026-08-14T16:30:05Z