Triangle MicroWorks SCADA Data Gateway 2.50.0309 through 3.00.0616, DNP3 .NET Protocol components 3.06.0.171 through 3.15.0.369, and DNP3 C libraries 3.06.0000 through 3.15.0000 allow physically proximate attackers to cause a denial of service (infinite loop) via crafted input over a serial line.
References
Link | Resource |
---|---|
http://www.trianglemicroworks.com/documents/mdnp_scl_whats_new.pdf | |
http://ics-cert.us-cert.gov/advisories/ICSA-13-240-01 | US Government Resource |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Information
Published : 2013-09-09 04:39
Updated : 2013-10-08 10:24
NVD link : CVE-2013-2794
Mitre link : CVE-2013-2794
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
trianglemicroworks
- scada_data_gateway
- .net_communication_protocol_components
- ansi_c_source_code_libraries