PT-2021-23325 · Siemens · Ruggedcom Rox Rx1512+8

Published

2021-10-12

·

Updated

2022-08-12

·

CVE-2021-41546

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions RUGGEDCOM ROX MX5000 versions prior to V2.14.1 RUGGEDCOM ROX RX1400 versions prior to V2.14.1 RUGGEDCOM ROX RX1500 versions prior to V2.14.1 RUGGEDCOM ROX RX1501 versions prior to V2.14.1 RUGGEDCOM ROX RX1510 versions prior to V2.14.1 RUGGEDCOM ROX RX1511 versions prior to V2.14.1 RUGGEDCOM ROX RX1512 versions prior to V2.14.1 RUGGEDCOM ROX RX1524 versions prior to V2.14.1 RUGGEDCOM ROX RX1536 versions prior to V2.14.1 RUGGEDCOM ROX RX5000 versions prior to V2.14.1
Description A vulnerability has been identified in the RUGGEDCOM ROX series devices. Affected devices write crashdumps without checking if enough space is available on the filesystem. Once the crashdump fills the entire root filesystem, affected devices fail to boot successfully. An attacker can leverage this vulnerability to cause a permanent Denial-of-Service.
Recommendations For RUGGEDCOM ROX MX5000 versions prior to V2.14.1, update to version V2.14.1 or later. For RUGGEDCOM ROX RX1400 versions prior to V2.14.1, update to version V2.14.1 or later. For RUGGEDCOM ROX RX1500 versions prior to V2.14.1, update to version V2.14.1 or later. For RUGGEDCOM ROX RX1501 versions prior to V2.14.1, update to version V2.14.1 or later. For RUGGEDCOM ROX RX1510 versions prior to V2.14.1, update to version V2.14.1 or later. For RUGGEDCOM ROX RX1511 versions prior to V2.14.1, update to version V2.14.1 or later. For RUGGEDCOM ROX RX1512 versions prior to V2.14.1, update to version V2.14.1 or later. For RUGGEDCOM ROX RX1524 versions prior to V2.14.1, update to version V2.14.1 or later. For RUGGEDCOM ROX RX1536 versions prior to V2.14.1, update to version V2.14.1 or later. For RUGGEDCOM ROX RX5000 versions prior to V2.14.1, update to version V2.14.1 or later.

Fix

Allocation of Resources Without Limits

Resource Exhaustion

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-41546

Affected Products

Ruggedcom Rox Mx5000
Ruggedcom Rox Rx1400
Ruggedcom Rox Rx1500
Ruggedcom Rox Rx1501
Ruggedcom Rox Rx1510
Ruggedcom Rox Rx1511
Ruggedcom Rox Rx1512
Ruggedcom Rox Rx1524
Ruggedcom Rox Rx1536