PT-2021-20018 · Toyota · Toyopuc-Pc3J/Pc2J Series+3

Yenting Lee

·

Published

2021-09-10

·

Updated

2021-09-24

·

CVE-2021-33011

CVSS v2.0

3.3

Low

VectorAV:A/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions TOYOPUC-PC10 Series (affected versions not specified) TOYOPUC-Plus Series (affected versions not specified) TOYOPUC-PC3J/PC2J Series (affected versions not specified) TOYOPUC-Nano Series (affected versions not specified)
Description The affected products may not be able to properly process an ICMP flood, which may allow an attacker to deny Ethernet communications between affected devices.
Recommendations For TOYOPUC-PC10 Series, consider implementing network traffic filtering to minimize the risk of ICMP flood attacks until a patch is available. For TOYOPUC-Plus Series, restrict access to the Ethernet network to minimize the risk of exploitation. For TOYOPUC-PC3J/PC2J Series, consider disabling ICMP protocol support as a temporary workaround until a patch is available. For TOYOPUC-Nano Series, avoid using the affected devices in networks that are exposed to potential ICMP flood attacks until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Allocation of Resources Without Limits

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-33011

Affected Products

Toyopuc-Nano Series
Toyopuc-Pc10 Series
Toyopuc-Pc3J/Pc2J Series
Toyopuc-Plus Series