A Resource Exhaustion issue was discovered in Rockwell Automation ControlLogix 5580 controllers V28.011, V28.012, and V28.013; ControlLogix 5580 controllers V29.011; CompactLogix 5380 controllers V28.011; and CompactLogix 5380 controllers V29.011. This vulnerability may allow an attacker to cause a denial of service condition by sending a series of specific CIP-based commands to the controller.
References
Link | Resource |
---|---|
https://ics-cert.us-cert.gov/advisories/ICSA-17-094-05 | Third Party Advisory US Government Resource |
http://www.securityfocus.com/bid/98309 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Information
Published : 2017-05-05 17:29
Updated : 2022-03-23 07:09
NVD link : CVE-2017-6024
Mitre link : CVE-2017-6024
JSON object : View
CWE
CWE-400
Uncontrolled Resource Consumption
Products Affected
rockwellautomation
- controllogix_5580
- compactlogix_5380
- compactlogix_5380_firmware
- controllogix_5580_firmware