PT-2019-7162 · Opto 22 · Opto 22 Optodatalink+5

Ivan Sanchez

·

Published

2019-05-10

·

Updated

2019-10-09

·

CVE-2015-1006

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Opto 22 PAC Project Professional versions prior to R9.4006 Opto 22 PAC Project Basic versions prior to R9.4006 Opto 22 PAC Display Basic versions prior to R9.4f Opto 22 PAC Display Professional versions prior to R9.4f Opto 22 OptoOPCServer versions prior to R9.4c Opto 22 OptoDataLink versions prior to R9.4d and versions installed by PAC Project installer prior to R9.4006
Description A vulnerable file is susceptible to a heap-based buffer overflow condition that may allow remote code execution on the target system.
Recommendations For Opto 22 PAC Project Professional versions prior to R9.4006, upgrade to version R9.4006 or later. For Opto 22 PAC Project Basic versions prior to R9.4006, upgrade to version R9.4006 or later. For Opto 22 PAC Display Basic versions prior to R9.4f, upgrade to version R9.4f or later. For Opto 22 PAC Display Professional versions prior to R9.4f, upgrade to version R9.4f or later. For Opto 22 OptoOPCServer versions prior to R9.4c, upgrade to version R9.4c or later. For Opto 22 OptoDataLink versions prior to R9.4d and versions installed by PAC Project installer prior to R9.4006, upgrade to version R9.4d or later and ensure the PAC Project installer is version R9.4006 or later.

Fix

Stack Overflow

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2015-1006

Affected Products

Opto 22 Optodatalink
Opto 22 Optoopcserver
Opto 22 Pac Display Basic
Opto 22 Pac Display Professional
Opto 22 Pac Project Basic
Opto 22 Pac Project Professional