{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/tags/cve-2026-76987/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":[],"_cs_cves":[{"cvss":7.3,"id":"CVE-2026-76987"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["CIPster"],"_cs_severities":["high"],"_cs_tags":["vulnerability","cve-2026-76987","memory-corruption"],"_cs_type":"advisory","_cs_vendors":["liftoff-sr"],"content_html":"\u003cp\u003eA memory corruption vulnerability, tracked as CVE-2026-76987, affects the Generic Attribute Logic component within liftoff-sr CIPster (specifically version 1802525be27d33e19a9a83c163e331a1d13b1892). The flaw originates in the CipAttribute::GetAttrData and CipAttribute::SetAttrData functions located within the ciptypes.h header file. This vulnerability is significant because it can be triggered remotely without authentication. The vulnerability has been publicly disclosed, and exploit code is available, increasing the risk of exploitation. Defenders must verify the version of the CIPster component in use and apply the recommended patch e745d9d4a8ca3a13689066983a1269fe1e567674 immediately to prevent potential remote code execution or application crashes resulting from memory corruption.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eThe vulnerability poses a high risk to availability and system integrity due to the potential for memory corruption. Attackers can remotely exploit this flaw, which may lead to service disruption (denial of service) or potential arbitrary code execution depending on the environment. The scope of impact includes any deployment utilizing the vulnerable CIPster component, particularly those exposed to network traffic.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eIdentify all instances of liftoff-sr CIPster within the environment and verify if the commit 1802525be27d33e19a9a83c163e331a1d13b1892 is present.\u003c/li\u003e\n\u003cli\u003eApply patch e745d9d4a8ca3a13689066983a1269fe1e567674 to all affected CIPster components.\u003c/li\u003e\n\u003cli\u003eRestrict network access to services utilizing the Generic Attribute Logic component if patching cannot be performed immediately.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-08-20T15:15:29Z","date_published":"2026-08-20T15:15:29Z","id":"https://feed.craftedsignal.io/briefs/2026-08-cve-2026-76987/","summary":"A remote memory corruption vulnerability in the Generic Attribute Logic component of liftoff-sr CIPster allows for unauthenticated exploitation via the GetAttrData and SetAttrData functions.","title":"Memory Corruption Vulnerability in liftoff-sr CIPster","url":"https://feed.craftedsignal.io/briefs/2026-08-cve-2026-76987/"}],"language":"en","title":"CraftedSignal Threat Feed - Cve-2026-76987","version":"https://jsonfeed.org/version/1.1"}