CVE-2011-2530

Buffer overflow in RSEds.dll in RSHWare.exe in the EDS Hardware Installation Tool 1.0.5.1 and earlier in Rockwell Automation RSLinx Classic before 2.58 allows user-assisted remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a malformed .eds file.
Configurations

Configuration 1 (hide)

cpe:2.3:a:rockwellautomation:rslinx:*:*:*:*:classic:*:*:*

Configuration 2 (hide)

cpe:2.3:a:rockwellautomation:eds_hardware_installation_tool:*:*:*:*:*:*:*:*

History

21 Nov 2024, 01:28

Type Values Removed Values Added
References () http://rockwellautomation.custhelp.com/app/answers/detail/a_id/279194 - Permissions Required () http://rockwellautomation.custhelp.com/app/answers/detail/a_id/279194 - Permissions Required
References () http://www.kb.cert.org/vuls/id/127584 - US Government Resource () http://www.kb.cert.org/vuls/id/127584 - US Government Resource
References () http://www.kb.cert.org/vuls/id/MAPG-8G9PWX - US Government Resource () http://www.kb.cert.org/vuls/id/MAPG-8G9PWX - US Government Resource
References () http://www.securityfocus.com/bid/48092 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/48092 - Third Party Advisory, VDB Entry

Information

Published : 2011-06-22 21:55

Updated : 2024-11-21 01:28


NVD link : CVE-2011-2530

Mitre link : CVE-2011-2530

CVE.ORG link : CVE-2011-2530


JSON object : View

Products Affected

rockwellautomation

  • rslinx
  • eds_hardware_installation_tool
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer