PT-2020-14031 · Tridium · Niagara Enterprise Security+1
Published
2020-08-13
·
Updated
2020-08-19
·
CVE-2020-14483
CVSS v3.1
4.3
Medium
| Vector | AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L |
Name of the Vulnerable Software and Affected Versions
Niagara versions 4.6.96.28 through 4.8.0.110
Niagara Enterprise Security versions 2.4.31 through 4.8.0.35
Description
A timeout during a TLS handshake can cause the connection to fail to terminate, resulting in a Niagara thread hanging. This issue requires a manual restart of the affected system to correct.
Recommendations
For Niagara versions 4.6.96.28 through 4.8.0.110, restart the Niagara service manually to resolve the issue.
For Niagara Enterprise Security versions 2.4.31 through 4.8.0.35, restart the Niagara Enterprise Security service manually to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Niagara
Niagara Enterprise Security