PT-2012-2413 · Rockwell Automation · Factorytalk+1
Published
2012-04-02
·
Updated
2012-04-03
·
CVE-2012-0222
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Rockwell Automation Allen-Bradley FactoryTalk CPR9 through SR5
RSLogix 5000 versions 17 through 20
Description
The issue allows remote attackers to cause a denial of service via a crafted packet, resulting in an out-of-bounds read.
Recommendations
For Rockwell Automation Allen-Bradley FactoryTalk CPR9 through SR5, update to a version outside of the affected range to resolve the issue.
For RSLogix 5000 versions 17 through 20, update to a version outside of the affected range to resolve the issue.
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Factorytalk
Rslogix 5000