PT-2024-14794 · Honeywell · Honeywell

Published

2024-04-11

·

Updated

2024-04-12

·

CVE-2023-5394

CVSS v3.1

7.4

High

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:H
Name of the Vulnerable Software and Affected Versions Honeywell product (affected versions not specified)
Description The issue arises when a server receives a malformed message where the GCL message hostname is too large, potentially causing a stack overflow. This could result in possible remote code execution.
Recommendations Update to the most recent version of the product. Refer to Honeywell Security Notification for recommendations on upgrading and versioning.

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2023-5394

Affected Products

Honeywell