PT-2013-3953 · Roche · Elecsys Director Gateway
Adam Crain
+2
·
Publicado
2013-12-04
·
Atualizado
2014-02-27
·
CVE-2013-2825
CVSS v2.0
4.3
Média
| Vetor | AV:N/AC:M/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Elecsys Director Gateway devices with kernel 2.6.32.11ael1 and earlier
Description
The issue allows remote attackers to cause a denial of service, resulting in CPU consumption and communication outage, via crafted input to the DNP3 service in the Outstation component.
Recommendations
For kernel versions 2.6.32.11ael1 and earlier, consider disabling the DNP3 service in the Outstation component as a temporary workaround to minimize the risk of exploitation.
Correção
RCE
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Elecsys Director Gateway