PT-2025-20686 · Auma · Auma Mec 03.01+5
Dennis Schaefer
·
Published
2025-05-12
·
Updated
2025-06-06
·
CVE-2025-3496
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Auma AC1.2 versions 06.00.00 through 06.09.04
Auma MEC 03.01 versions prior to 01.02.00
Auma PROFOX versions prior to 01-01.10.00
Auma SGx/SVx versions 03.00.00 through 03.05.01
Auma TIGRON versions prior to 01-01.09.00
Auma TIGRON SIL versions prior to 02-01.01.00
Description
An unauthenticated remote attacker can cause a buffer overflow, potentially leading to unexpected behavior or Denial of Service (DoS) via Bluetooth or RS-232 interface. This issue is related to a buffer copy without checking the size of the input, also known as a 'Classic Buffer Overflow'.
Recommendations
For Auma AC1.2 versions 06.00.00 through 06.09.04, update to a version later than 06.09.04.
For Auma MEC 03.01 versions prior to 01.02.00, update to version 01.02.00 or later.
For Auma PROFOX versions prior to 01-01.10.00, update to version 01-01.10.00 or later.
For Auma SGx/SVx versions 03.00.00 through 03.05.01, update to a version later than 03.05.01.
For Auma TIGRON versions prior to 01-01.09.00, update to version 01-01.09.00 or later.
For Auma TIGRON SIL versions prior to 02-01.01.00, update to version 02-01.01.00 or later.
Fix
DoS
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Auma Ac1.2
Auma Mec 03.01
Auma Profox
Auma Sgx/Svx
Auma Tigron
Auma Tigron Sil