PT-2019-6900 · Rockwell Automation · Rslinx Enterprise

Publicado

2019-03-26

·

Atualizado

2020-02-10

·

CVE-2013-2805

CVSS v2.0

7.8

Alta

VetorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Rockwell Automation RSLinx Enterprise Software versions CPR9 through CPR9-SR6
Description The issue arises from incorrect handling of input by the LogReceiver.exe service, resulting in a logic error when it receives a datagram with an incorrect value in the Record Data Size field. An attacker can exploit this by sending a modified datagram over Port 4444/UDP, causing an out-of-bounds read access violation that leads to a service crash. The service can be recovered with a manual reboot.
Recommendations For versions CPR9 through CPR9-SR6, apply the patches and follow the details provided in the Rockwell Automation Security Advisory to resolve the issue. As a temporary workaround, consider restricting access to Port 4444/UDP to minimize the risk of exploitation.

Correção

Out of bounds Read

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2013-2805

Produtos afetados

Rslinx Enterprise