Published:2026/09/15  Last Updated:2026/09/15

JVNVU#99837984
Panasonic Industry MINAS A5/A6 USB device drivers for Windows vulnerable to buffer overflow

Overview

MINAS A5/A6 USB device drivers for Windows provided by Panasonic Industry Co., Ltd. contain a buffer overflow vulnerability.

Products Affected

The affected device drivers are contained in the following software.

  • PANATERM v6 versions 6.0.13.0 and earlier
  • PANATERM for Multi versions 6.2.3.1 and earlier
  • PANATERM v7 versions 7.5.0.0 and earlier
  • RTEX LogReader versions 15.0.0.591 and earlier
  • GM Programmer versions 2.2.1.0 and earlier

Description

MINAS A5/A6 USB device drivers for Windows provided by Panasonic Industry Co., Ltd. contain the following vulnerability.

  • Classic Buffer Overflow (CWE-120)
    • CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N Base Score 6.8
    • CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H Base Score 5.5
    • CVE-2026-16726

Impact

If the user is directed to connect some malicious USB device to the Windows PC, the USB device driver may crash and result in the DoS (Denial-of-Service) condition on Windows.

Solution

Update the Software
Update the software to the latest version according to the information provided by the developer.

Vendor Status

Vendor Link
Panasonic Industry Co., Ltd. USB Driver "PTUsbDrvA5"
Vulnerability Advisory List

References

JPCERT/CC Addendum

Vulnerability Analysis by JPCERT/CC

Credit

Luca Borzacchiello of Nozomi Networks reported the issue directly to Panasonic.
Panasonic reported this issue to JPCERT/CC to notify users of its solution through JVN.

Other Information

JPCERT Alert
JPCERT Reports
CERT Advisory
CPNI Advisory
TRnotes
CVE
JVN iPedia