Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 01 Oct 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | RT-Labs AB C-Open CANopen contains a NULL pointer dereference if the LSS protocol is used to configure the device. An object defined by the user application may not have all required subindexes for object 0x1018. An unauthenticated, remote attacker with access to the CAN bus, through a compromised node for instance, can initiate the LSS protocol on a device with a misconfigured identity object and potentially crash the device. Fixed in 1.1.1. | |
| Title | RT-Labs AB C-Open CANopen NULL pointer dereference | |
| Weaknesses | CWE-476 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: cisa-cg
Published:
Updated: 2026-10-01T19:41:47.996Z
Reserved: 2026-08-28T18:10:39.170Z
Link: CVE-2026-82357
No data.
Status : Deferred
Published: 2026-10-01T20:17:32.363
Modified: 2026-10-01T20:34:45.250
Link: CVE-2026-82357
No data.
OpenCVE Enrichment
Updated: 2026-10-01T22:00:17Z