Libiec Iccp Mod Project maintains a specialized library for ICCP (Inter-Control Center Communications Protocol) implementation, a niche but operationally significant component in power systems and critical infrastructure communication. The disclosed vulnerabilities recur around memory-safety issues including out-of-bounds writes and classic buffer overflows, reflecting the lower-level nature of protocol parsing and the memory constraints often present in embedded and legacy infrastructure deployments. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Libiec Iccp Mod Project over time
Signals from CVEs in this vendor scope (6 CVEs).
6 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-20490HIGH A heap buffer-overflow in the client_example1.c component of libiec_iccp_mod v1.5 leads to a denial of service (DOS). | Aug 31, 2021 | 7.5 | 25 | NO | NO |
CVE-2020-20658HIGH Buffer overflow vulnerability in fcovatti libiec_iccp_mod v1.5, allows attackers to cause a denail of service when trying to calloc an unexpectiedly large space. | Nov 2, 2021 | 7.5 | 24 | NO | NO |
CVE-2020-20657HIGH Buffer overflow vulnerability in fcovatti libiec_iccp_mod v1.5, allows attackers to cause a denial of service via an unexpected packet while trying to connect. | Nov 2, 2021 | 7.5 | 24 | NO | NO |
CVE-2020-20663MEDIUM libiec_iccp_mod v1.5 contains a heap-buffer-overflow in the component mms_client_connection.c. | Sep 30, 2021 | 6.5 | 22 | NO | NO |
CVE-2020-20664MEDIUM libiec_iccp_mod v1.5 contains a segmentation violation in the component server_example1.c. | Sep 30, 2021 | 6.5 | 17 | NO | NO |
CVE-2020-20662MEDIUM libiec_iccp_mod v1.5 contains a heap-buffer-overflow in the component mms_client_example1.c. | Sep 30, 2021 | 6.5 | 17 | NO | NO |
Signals from CVEs in this vendor scope (6 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Libiec Iccp Mod Project.
Media articles that mention a CVE ID that affects a product developed by Libiec Iccp Mod Project — matched by CVE ID, not by vendor name.