PT-2012-2436 · Abb · Robotstudio+8
Luigi Auriemma
·
Published
2012-03-09
·
Updated
2012-10-30
·
CVE-2012-0245
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
ABB Robot Communications Runtime versions prior to 5.14.02
ABB Interlink Module versions prior to 5.14.02
IRC5 OPC Server versions prior to 5.14.02
PC SDK versions prior to 5.14.02
PickMaster 3 and 5 versions prior to 5.14.02
RobView 5 versions prior to 5.14.02
RobotStudio versions prior to 5.14.02
WebWare SDK versions prior to 5.14.02
WebWare Server versions prior to 5.14.02
Description
The issue is caused by multiple stack-based buffer overflows in RobNetScanHost.exe. Remote attackers can execute arbitrary code via crafted Netscan packets, specifically types 0xA or 0xE.
Recommendations
For ABB Robot Communications Runtime version prior to 5.14.02, update to version 5.14.02 or later.
For ABB Interlink Module version prior to 5.14.02, update to version 5.14.02 or later.
For IRC5 OPC Server version prior to 5.14.02, update to version 5.14.02 or later.
For PC SDK version prior to 5.14.02, update to version 5.14.02 or later.
For PickMaster 3 and 5 version prior to 5.14.02, update to version 5.14.02 or later.
For RobView 5 version prior to 5.14.02, update to version 5.14.02 or later.
For RobotStudio version prior to 5.14.02, update to version 5.14.02 or later.
For WebWare SDK version prior to 5.14.02, update to version 5.14.02 or later.
For WebWare Server version prior to 5.14.02, update to version 5.14.02 or later.
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Abb Interlink Module
Abb Robot Communications Runtime
Irc5 Opc Server
Pc Sdk
Pickmaster 3/5
Robview 5
Robotstudio
Webware Sdk
Webware Server