PT-2021-20018 · Toyota · Toyopuc-Pc3J/Pc2J Series+3
Yenting Lee
·
Published
2021-09-10
·
Updated
2021-09-24
·
CVE-2021-33011
CVSS v2.0
3.3
Low
| Vector | AV:A/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
TOYOPUC-PC10 Series (affected versions not specified)
TOYOPUC-Plus Series (affected versions not specified)
TOYOPUC-PC3J/PC2J Series (affected versions not specified)
TOYOPUC-Nano Series (affected versions not specified)
Description
The affected products may not be able to properly process an ICMP flood, which may allow an attacker to deny Ethernet communications between affected devices.
Recommendations
For TOYOPUC-PC10 Series, consider implementing network traffic filtering to minimize the risk of ICMP flood attacks until a patch is available.
For TOYOPUC-Plus Series, restrict access to the Ethernet network to minimize the risk of exploitation.
For TOYOPUC-PC3J/PC2J Series, consider disabling ICMP protocol support as a temporary workaround until a patch is available.
For TOYOPUC-Nano Series, avoid using the affected devices in networks that are exposed to potential ICMP flood attacks until the issue is resolved.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Allocation of Resources Without Limits
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Toyopuc-Nano Series
Toyopuc-Pc10 Series
Toyopuc-Pc3J/Pc2J Series
Toyopuc-Plus Series