{"id":"CVE-2026-75347","title":"EIPStackGroup OpENer v2.3 and master up to commit 76b95cf contain an expired pointer dereference vulnerability in the EtherNet/IP Common Packet Format (CPF) handling logic","summary":"EIPStackGroup OpENer v2.3 and master up to commit 76b95cf contain an expired pointer dereference vulnerability in the EtherNet/IP Common Packet Format (CPF) handling logic. This allows a remote attacker to cause a denial of service.","severity":"high","cvss":7.5,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","published":"2026-10-09","updated":"2026-10-09","sourceUpdated":"2026-10-09T17:41:47.060","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-75347","references":[{"url":"https://github.com/EIPStackGroup/OpENer/blob/master/source/src/enet_encap/cpf.c","label":"cve@mitre.org"},{"url":"https://github.com/EIPStackGroup/OpENer/blob/master/source/src/enet_encap/encap.c","label":"cve@mitre.org"},{"url":"https://github.com/EIPStackGroup/OpENer/blob/master/source/src/ports/generic_networkhandler.c","label":"cve@mitre.org"},{"url":"https://github.com/EIPStackGroup/OpENer/issues/575","label":"cve@mitre.org"}],"tags":["nvd"],"ingestedAt":"2026-10-09T18:07:39.419Z","slug":"CVE-2026-75347","body":"## Overview\n\nEIPStackGroup OpENer v2.3 and master up to commit 76b95cf contain an expired pointer dereference vulnerability in the EtherNet/IP Common Packet Format (CPF) handling logic. This allows a remote attacker to cause a denial of service.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":41,"depthScoreParts":{"impact":41.3,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}