Buffer overflow in RSEds.dll in RSHWare.exe in the EDS Hardware Installation Tool 1.0.5.1 and earlier in Rockwell Automation RSLinx Classic before 2.58 allows user-assisted remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a malformed .eds file.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/48092 | Third Party Advisory VDB Entry |
http://www.kb.cert.org/vuls/id/MAPG-8G9PWX | US Government Resource |
http://rockwellautomation.custhelp.com/app/answers/detail/a_id/279194 | Permissions Required |
http://www.kb.cert.org/vuls/id/127584 | US Government Resource |
Information
Published : 2011-06-22 14:55
Updated : 2018-04-10 08:53
NVD link : CVE-2011-2530
Mitre link : CVE-2011-2530
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
rockwellautomation
- eds_hardware_installation_tool
- rslinx