PT-2012-2436 · Abb · Robotstudio+8

Luigi Auriemma

·

Published

2012-03-09

·

Updated

2012-10-30

·

CVE-2012-0245

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions ABB Robot Communications Runtime versions prior to 5.14.02 ABB Interlink Module versions prior to 5.14.02 IRC5 OPC Server versions prior to 5.14.02 PC SDK versions prior to 5.14.02 PickMaster 3 and 5 versions prior to 5.14.02 RobView 5 versions prior to 5.14.02 RobotStudio versions prior to 5.14.02 WebWare SDK versions prior to 5.14.02 WebWare Server versions prior to 5.14.02
Description The issue is caused by multiple stack-based buffer overflows in RobNetScanHost.exe. Remote attackers can execute arbitrary code via crafted Netscan packets, specifically types 0xA or 0xE.
Recommendations For ABB Robot Communications Runtime version prior to 5.14.02, update to version 5.14.02 or later. For ABB Interlink Module version prior to 5.14.02, update to version 5.14.02 or later. For IRC5 OPC Server version prior to 5.14.02, update to version 5.14.02 or later. For PC SDK version prior to 5.14.02, update to version 5.14.02 or later. For PickMaster 3 and 5 version prior to 5.14.02, update to version 5.14.02 or later. For RobView 5 version prior to 5.14.02, update to version 5.14.02 or later. For RobotStudio version prior to 5.14.02, update to version 5.14.02 or later. For WebWare SDK version prior to 5.14.02, update to version 5.14.02 or later. For WebWare Server version prior to 5.14.02, update to version 5.14.02 or later.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2012-0245

Affected Products

Abb Interlink Module
Abb Robot Communications Runtime
Irc5 Opc Server
Pc Sdk
Pickmaster 3/5
Robview 5
Robotstudio
Webware Sdk
Webware Server