PT-2021-19570 · Siemens · Ruggedcom Ros Rst916C+33
Published
2021-07-13
·
Updated
2021-08-27
·
CVE-2021-31895
CVSS v3.1
8.1
High
| Vector | AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions:
RUGGEDCOM ROS M2100 versions prior to V4.3.7
RUGGEDCOM ROS M2200 versions prior to V4.3.7
RUGGEDCOM ROS M969 versions prior to V4.3.7
RUGGEDCOM ROS RMC versions prior to V4.3.7
RUGGEDCOM ROS RMC20 versions prior to V4.3.7
RUGGEDCOM ROS RMC30 versions prior to V4.3.7
RUGGEDCOM ROS RMC40 versions prior to V4.3.7
RUGGEDCOM ROS RMC41 versions prior to V4.3.7
RUGGEDCOM ROS RMC8388 V4.X versions prior to V4.3.7
RUGGEDCOM ROS RMC8388 V5.X versions prior to V5.5.4
RUGGEDCOM ROS RP110 versions prior to V4.3.7
RUGGEDCOM ROS RS400 versions prior to V4.3.7
RUGGEDCOM ROS RS401 versions prior to V4.3.7
RUGGEDCOM ROS RS416 versions prior to V4.3.7
RUGGEDCOM ROS RS416v2 V4.X versions prior to V4.3.7
RUGGEDCOM ROS RS416v2 V5.X versions prior to V5.5.4
RUGGEDCOM ROS RS8000 versions prior to V4.3.7
RUGGEDCOM ROS RS8000A versions prior to V4.3.7
RUGGEDCOM ROS RS8000H versions prior to V4.3.7
RUGGEDCOM ROS RS8000T versions prior to V4.3.7
RUGGEDCOM ROS RS900 (32M) V4.X versions prior to V4.3.7
RUGGEDCOM ROS RS900 (32M) V5.X versions prior to V5.5.4
RUGGEDCOM ROS RS900G versions prior to V4.3.7
RUGGEDCOM ROS RS900G (32M) V4.X versions prior to V4.3.7
RUGGEDCOM ROS RS900G (32M) V5.X versions prior to V5.5.4
RUGGEDCOM ROS RS900GP versions prior to V4.3.7
RUGGEDCOM ROS RS900L versions prior to V4.3.7
RUGGEDCOM ROS RS900W versions prior to V4.3.7
RUGGEDCOM ROS RS910 versions prior to V4.3.7
RUGGEDCOM ROS RS910L versions prior to V4.3.7
RUGGEDCOM ROS RS910W versions prior to V4.3.7
RUGGEDCOM ROS RS920L versions prior to V4.3.7
RUGGEDCOM ROS RS920W versions prior to V4.3.7
RUGGEDCOM ROS RS930L versions prior to V4.3.7
RUGGEDCOM ROS RS930W versions prior to V4.3.7
RUGGEDCOM ROS RS940G versions prior to V4.3.7
RUGGEDCOM ROS RS969 versions prior to V4.3.7
RUGGEDCOM ROS RSG2100 (32M) V4.X versions prior to V4.3.7
RUGGEDCOM ROS RSG2100 (32M) V5.X versions prior to V5.5.4
RUGGEDCOM ROS RSG2100 V4.X versions prior to V4.3.7
RUGGEDCOM ROS RSG2100P versions prior to V4.3.7
RUGGEDCOM ROS RSG2100P (32M) V4.X versions prior to V4.3.7
RUGGEDCOM ROS RSG2100P (32M) V5.X versions prior to V5.5.4
RUGGEDCOM ROS RSG2200 versions prior to V4.3.7
RUGGEDCOM ROS RSG2288 V4.X versions prior to V4.3.7
RUGGEDCOM ROS RSG2288 V5.X versions prior to V5.5.4
RUGGEDCOM ROS RSG2300 V4.X versions prior to V4.3.7
RUGGEDCOM ROS RSG2300 V5.X versions prior to V5.5.4
RUGGEDCOM ROS RSG2300P V4.X versions prior to V4.3.7
RUGGEDCOM ROS RSG2300P V5.X versions prior to V5.5.4
RUGGEDCOM ROS RSG2488 V4.X versions prior to V4.3.7
RUGGEDCOM ROS RSG2488 V5.X versions prior to V5.5.4
RUGGEDCOM ROS RSG900 V4.X versions prior to V4.3.7
RUGGEDCOM ROS RSG900 V5.X versions prior to V5.5.4
RUGGEDCOM ROS RSG900C versions prior to V5.5.4
RUGGEDCOM ROS RSG900G V4.X versions prior to V4.3.7
RUGGEDCOM ROS RSG900G V5.X versions prior to V5.5.4
RUGGEDCOM ROS RSG900R versions prior to V5.5.4
RUGGEDCOM ROS RSG920P V4.X versions prior to V4.3.7
RUGGEDCOM ROS RSG920P V5.X versions prior to V5.5.4
RUGGEDCOM ROS RSL910 versions prior to V5.5.4
RUGGEDCOM ROS RST2228 versions prior to V5.5.4
RUGGEDCOM ROS RST916C versions prior to V5.5.4
RUGGEDCOM ROS RST916P versions prior to V5.5.4
RUGGEDCOM ROS i800 versions prior to V4.3.7
RUGGEDCOM ROS i801 versions prior to V4.3.7
RUGGEDCOM ROS i802 versions prior to V4.3.7
RUGGEDCOM ROS i803 versions prior to V4.3.7
Description:
The DHCP client in affected devices fails to properly sanitize incoming DHCP packets. This could allow an unauthenticated remote attacker to cause memory to be overwritten, potentially allowing remote code execution.
Recommendations:
For RUGGEDCOM ROS M2100 versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS M2200 versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS M969 versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RMC versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RMC20 versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RMC30 versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RMC40 versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RMC41 versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RMC8388 V4.X versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RMC8388 V5.X versions prior to V5.5.4, update to version V5.5.4 or later.
For RUGGEDCOM ROS RP110 versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RS400 versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RS401 versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RS416 versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RS416v2 V4.X versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RS416v2 V5.X versions prior to V5.5.4, update to version V5.5.4 or later.
For RUGGEDCOM ROS RS8000 versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RS8000A versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RS8000H versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RS8000T versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RS900 (32M) V4.X versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RS900 (32M) V5.X versions prior to V5.5.4, update to version V5.5.4 or later.
For RUGGEDCOM ROS RS900G versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RS900G (32M) V4.X versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RS900G (32M) V5.X versions prior to V5.5.4, update to version V5.5.4 or later.
For RUGGEDCOM ROS RS900GP versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RS900L versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RS900W versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RS910 versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RS910L versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RS910W versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RS920L versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RS920W versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RS930L versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RS930W versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RS940G versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RS969 versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RSG2100 (32M) V4.X versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RSG2100 (32M) V5.X versions prior to V5.5.4, update to version V5.5.4 or later.
For RUGGEDCOM ROS RSG2100 V4.X versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RSG2100P versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RSG2100P (32M) V4.X versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RSG2100P (32M) V5.X versions prior to V5.5.4, update to version V5.5.4 or later.
For RUGGEDCOM ROS RSG2200 versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RSG2288 V4.X versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RSG2288 V5.X versions prior to V5.5.4, update to version V5.5.4 or later.
For RUGGEDCOM ROS RSG2300 V4.X versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RSG2300 V5.X versions prior to V5.5.4, update to version V5.5.4 or later.
For RUGGEDCOM ROS RSG2300P V4.X versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RSG2300P V5.X versions prior to V5.5.4, update to version V5.5.4 or later.
For RUGGEDCOM ROS RSG2488 V4.X versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RSG2488 V5.X versions prior to V5.5.4, update to version V5.5.4 or later.
For RUGGEDCOM ROS RSG900 V4.X versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RSG900 V5.X versions prior to V5.5.4, update to version V5.5.4 or later.
For RUGGEDCOM ROS RSG900C versions prior to V5.5.4, update to version V5.5.4 or later.
For RUGGEDCOM ROS RSG900G V4.X versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RSG900G V5.X versions prior to V5.5.4, update to version V5.5.4 or later.
For RUGGEDCOM ROS RSG900R versions prior to V5.5.4, update to version V5.5.4 or later.
For RUGGEDCOM ROS RSG920P V4.X versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS RSG920P V5.X versions prior to V5.5.4, update to version V5.5.4 or later.
For RUGGEDCOM ROS RSL910 versions prior to V5.5.4, update to version V5.5.4 or later.
For RUGGEDCOM ROS RST2228 versions prior to V5.5.4, update to version V5.5.4 or later.
For RUGGEDCOM ROS RST916C versions prior to V5.5.4, update to version V5.5.4 or later.
For RUGGEDCOM ROS RST916P versions prior to V5.5.4, update to version V5.5.4 or later.
For RUGGEDCOM ROS i800 versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS i801 versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS i802 versions prior to V4.3.7, update to version V4.3.7 or later.
For RUGGEDCOM ROS i803 versions prior to V4.3.7, update to version V4.3.7 or later.
Fix
Buffer Overflow
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ruggedcom Ros M2100
Ruggedcom Ros M2200
Ruggedcom Rs969
Ruggedcom Ros Rmc
Ruggedcom Ros Rmc20
Ruggedcom Ros Rmc30
Ruggedcom Ros Rmc40
Ruggedcom Ros Rmc41
Ruggedcom Ros Rmc8388
Ruggedcom Ros Rp110
Ruggedcom Ros Rs400
Ruggedcom Ros Rs401
Ruggedcom Ros Rs416
Ruggedcom Ros Rs416V2
Ruggedcom Ros Rs8000
Ruggedcom Ros Rs900
Ruggedcom Ros Rs910
Ruggedcom Ros Rs920L
Ruggedcom Ros Rs930L
Ruggedcom Ros Rs940G
Ruggedcom Ros Rs969
Ruggedcom Ros Rsg2100
Ruggedcom Rsg2100P
Ruggedcom Ros Rsg2200
Ruggedcom Ros Rsg2288
Ruggedcom Ros Rsg2300
Ruggedcom Rsg2300P
Ruggedcom Ros Rsg2488
Ruggedcom Ros Rst2228
Ruggedcom Ros Rst916C
Ruggedcom Ros I800
Ruggedcom Ros I801
Ruggedcom Ros I802
Ruggedcom Ros I803