[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"branding":3,"analytics":7,"article-buffer-overflow-bug-hits-open-source-smtp-client-in-ics-devices":10,"sections":35},{"siteName":4,"siteTagline":5,"publisherName":4,"contactEmail":6},"The Revision","Tech news, decoded.","editor@therevision.news",{"gaMeasurementId":8,"adsenseClientId":9},"G-ZW2MV82GYR","ca-pub-8533917693782264",{"article":11},{"id":12,"slug":13,"title":14,"dek":15,"body_md":16,"tags_json":17,"published_at":18,"created_at":19,"updated_at":20,"status":21,"review_note":22,"review_notes":23,"image_url":22,"persona_id":22,"persona_name":22,"section":24,"tags":25,"sources":30,"feedback":34,"feedback_at":22,"cost_usd":34,"total_tokens":34},10381,"buffer-overflow-bug-hits-open-source-smtp-client-in-ics-devices","Buffer Overflow Bug Hits Open-Source SMTP Client in ICS Devices","A critical buffer overflow in lwIP's SMTP client, used in energy and water systems worldwide, could crash devices or enable remote code execution.","A critical bug in the open-source lwIP SMTP client could let attackers crash or hijack industrial control systems.\n\nCISA disclosed CVE-2026-15340 on October 6, 2026: a classic buffer overflow in version 2.2.1 of the lwIP SMTP client that fails to check the size of inputs before copying them. The flaw scores 9.8 out of 10 on CVSS 3.1, about as severe as the scale gets. lwIP is maintained on GNU Savannah by a Sweden-based team and is deployed in control systems across the energy and water and wastewater sectors worldwide. The security group xchglabs found the bug, reported it privately to the project, and held disclosure until a patch shipped.\n\nExploiting the flaw can crash a device outright or, worse, let an attacker run arbitrary code on it. For a water treatment controller or an energy-grid component, neither outcome is a minor inconvenience. Because lwIP is a shared networking stack baked into many vendors' hardware rather than one company's product, the fix has to trickle down through every device maker who built on it, not just one vendor's update cycle.\n\nThe fix itself is a single patch file, not a redesign - but like most ICS bugs, it's only fixed once someone actually flashes the device.","[\"ics-security\",\"lwip\",\"buffer-overflow\",\"critical-infrastructure\"]","2026-10-06T12:00:00.000Z","2026-10-07T01:22:55.809Z","2026-10-07T01:23:00.667Z","published",null,[],"security",[26,27,28,29],"ics-security","lwip","buffer-overflow","critical-infrastructure",[31],{"name":32,"url":33},"CISA Advisories","https:\u002F\u002Fwww.cisa.gov\u002Fnews-events\u002Fics-advisories\u002Ficsa-26-279-02",0,{"sections":36},[37,42,46,51,56,61,66,71,76,81,86,91,96,101],{"name":38,"slug":39,"count":40,"latest_published_at":41},"AI","ai",6524,"2026-10-08T14:28:03.000Z",{"name":43,"slug":24,"count":44,"latest_published_at":45},"Security",918,"2026-10-08T14:20:00.000Z",{"name":47,"slug":48,"count":49,"latest_published_at":50},"Policy","policy",475,"2026-10-08T14:04:42.000Z",{"name":52,"slug":53,"count":54,"latest_published_at":55},"Deals","deals",465,"2026-10-08T14:36:55.000Z",{"name":57,"slug":58,"count":59,"latest_published_at":60},"Hardware","hardware",225,"2026-10-08T13:10:18.000Z",{"name":62,"slug":63,"count":64,"latest_published_at":65},"Science","science",187,"2026-10-07T04:00:00.000Z",{"name":67,"slug":68,"count":69,"latest_published_at":70},"Consumer Tech","consumer-tech",178,"2026-10-08T14:16:37.000Z",{"name":72,"slug":73,"count":74,"latest_published_at":75},"Startups","startups",115,"2026-10-08T14:16:56.000Z",{"name":77,"slug":78,"count":79,"latest_published_at":80},"Software","software",113,"2026-10-07T18:10:00.000Z",{"name":82,"slug":83,"count":84,"latest_published_at":85},"Dev Tools","dev-tools",105,"2026-10-07T16:59:11.000Z",{"name":87,"slug":88,"count":89,"latest_published_at":90},"General","general",62,"2026-10-08T14:00:00.000Z",{"name":92,"slug":93,"count":94,"latest_published_at":95},"Gaming","gaming",56,"2026-10-07T12:00:00.000Z",{"name":97,"slug":98,"count":99,"latest_published_at":100},"Reviews","reviews",34,"2026-10-08T14:00:22.000Z",{"name":102,"slug":103,"count":104,"latest_published_at":105},"How-To","how-to",8,"2026-10-05T09:00:00.000Z"]