PT-2024-5108 · Siemens · Simatic Step 7 Safety+10
Published
2024-07-09
·
Updated
2024-07-09
·
CVE-2023-32735
CVSS v2.0
6.8
Medium
| Vector | AV:L/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
SIMATIC STEP 7 Safety versions prior to V16 Update 7
SIMATIC STEP 7 Safety versions prior to V17 Update 7
SIMATIC STEP 7 Safety versions prior to V18 Update 2
SIMATIC STEP 7 versions prior to V16 Update 7
SIMATIC STEP 7 versions prior to V17 Update 7
SIMATIC STEP 7 versions prior to V18 Update 2
SIMATIC WinCC Unified versions prior to V16 Update 7
SIMATIC WinCC Unified versions prior to V17 Update 7
SIMATIC WinCC Unified versions prior to V18 Update 2
SIMATIC WinCC versions prior to V16.7
SIMATIC WinCC versions prior to V17.7
SIMATIC WinCC versions prior to V18 Update 2
SIMOCODE ES versions prior to V16 Update 7
SIMOCODE ES versions prior to V17 Update 7
SIMOCODE ES versions prior to V18 Update 2
SIMOTION SCOUT TIA V5.4 SP1
SIMOTION SCOUT TIA V5.4 SP3
SIMOTION SCOUT TIA V5.5 SP1
SINAMICS Startdrive versions prior to V16 Update 7
SINAMICS Startdrive versions prior to V17 Update 7
SINAMICS Startdrive versions prior to V18 Update 2
SIRIUS Safety ES versions prior to V17 Update 7
SIRIUS Safety ES versions prior to V18 Update 2
SIRIUS Soft Starter ES versions prior to V17 Update 7
SIRIUS Soft Starter ES versions prior to V18 Update 2
Soft Starter ES versions prior to V16 Update 7
TIA Portal Cloud V3.0 versions prior to V18 Update 2
Description:
The issue is related to the deserialization mechanism in the Configuration Handler component of the Totally Integrated Automation Portal (TIA Portal) software. Affected applications do not properly restrict the .NET BinaryFormatter when deserializing hardware configuration profiles, which could allow an attacker to cause a type confusion and execute arbitrary code within the affected application.
Recommendations:
For SIMATIC STEP 7 Safety versions prior to V16 Update 7, update to V16 Update 7 or later.
For SIMATIC STEP 7 Safety versions prior to V17 Update 7, update to V17 Update 7 or later.
For SIMATIC STEP 7 Safety versions prior to V18 Update 2, update to V18 Update 2 or later.
For SIMATIC STEP 7 versions prior to V16 Update 7, update to V16 Update 7 or later.
For SIMATIC STEP 7 versions prior to V17 Update 7, update to V17 Update 7 or later.
For SIMATIC STEP 7 versions prior to V18 Update 2, update to V18 Update 2 or later.
For SIMATIC WinCC Unified versions prior to V16 Update 7, update to V16 Update 7 or later.
For SIMATIC WinCC Unified versions prior to V17 Update 7, update to V17 Update 7 or later.
For SIMATIC WinCC Unified versions prior to V18 Update 2, update to V18 Update 2 or later.
For SIMATIC WinCC versions prior to V16.7, update to V16.7 or later.
For SIMATIC WinCC versions prior to V17.7, update to V17.7 or later.
For SIMATIC WinCC versions prior to V18 Update 2, update to V18 Update 2 or later.
For SIMOCODE ES versions prior to V16 Update 7, update to V16 Update 7 or later.
For SIMOCODE ES versions prior to V17 Update 7, update to V17 Update 7 or later.
For SIMOCODE ES versions prior to V18 Update 2, update to V18 Update 2 or later.
For SIMOTION SCOUT TIA V5.4 SP1, update to a newer version that contains a fix for this issue.
For SIMOTION SCOUT TIA V5.4 SP3, update to a newer version that contains a fix for this issue.
For SIMOTION SCOUT TIA V5.5 SP1, update to a newer version that contains a fix for this issue.
For SINAMICS Startdrive versions prior to V16 Update 7, update to V16 Update 7 or later.
For SINAMICS Startdrive versions prior to V17 Update 7, update to V17 Update 7 or later.
For SINAMICS Startdrive versions prior to V18 Update 2, update to V18 Update 2 or later.
For SIRIUS Safety ES versions prior to V17 Update 7, update to V17 Update 7 or later.
For SIRIUS Safety ES versions prior to V18 Update 2, update to V18 Update 2 or later.
For SIRIUS Soft Starter ES versions prior to V17 Update 7, update to V17 Update 7 or later.
For SIRIUS Soft Starter ES versions prior to V18 Update 2, update to V18 Update 2 or later.
For Soft Starter ES versions prior to V16 Update 7, update to V16 Update 7 or later.
For TIA Portal Cloud V3.0 versions prior to V18 Update 2, update to V18 Update 2 or later.
Fix
Deserialization of Untrusted Data
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Simatic Step 7
Simatic Step 7 Safety
Simatic Wincc
Simatic Wincc Unified
Simocode Es
Simotion Scout Tia
Sinamics Startdrive
Sirius Safety Es
Sirius Soft Starter Es
Soft Starter Es
Tia Portal Cloud