PT-2012-2436 · Abb · Robotstudio+8
Luigi Auriemma
·
Publicado
2012-03-09
·
Atualizado
2012-10-30
·
CVE-2012-0245
CVSS v2.0
10
Alta
| Vetor | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
ABB Robot Communications Runtime versions prior to 5.14.02
ABB Interlink Module versions prior to 5.14.02
IRC5 OPC Server versions prior to 5.14.02
PC SDK versions prior to 5.14.02
PickMaster 3 and 5 versions prior to 5.14.02
RobView 5 versions prior to 5.14.02
RobotStudio versions prior to 5.14.02
WebWare SDK versions prior to 5.14.02
WebWare Server versions prior to 5.14.02
Description
The issue is caused by multiple stack-based buffer overflows in RobNetScanHost.exe. Remote attackers can execute arbitrary code via crafted Netscan packets, specifically types 0xA or 0xE.
Recommendations
For ABB Robot Communications Runtime version prior to 5.14.02, update to version 5.14.02 or later.
For ABB Interlink Module version prior to 5.14.02, update to version 5.14.02 or later.
For IRC5 OPC Server version prior to 5.14.02, update to version 5.14.02 or later.
For PC SDK version prior to 5.14.02, update to version 5.14.02 or later.
For PickMaster 3 and 5 version prior to 5.14.02, update to version 5.14.02 or later.
For RobView 5 version prior to 5.14.02, update to version 5.14.02 or later.
For RobotStudio version prior to 5.14.02, update to version 5.14.02 or later.
For WebWare SDK version prior to 5.14.02, update to version 5.14.02 or later.
For WebWare Server version prior to 5.14.02, update to version 5.14.02 or later.
Correção
Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Abb Interlink Module
Abb Robot Communications Runtime
Irc5 Opc Server
Pc Sdk
Pickmaster 3/5
Robview 5
Robotstudio
Webware Sdk
Webware Server