Triangle MicroWorks SCADA Data Gateway 2.50.0309 through 3.00.0616, DNP3 .NET Protocol components 3.06.0.171 through 3.15.0.369, and DNP3 C libraries 3.06.0000 through 3.15.0000 allow physically proximate attackers to cause a denial of service (infinite loop) via crafted input over a serial line.
References
Link | Resource |
---|---|
http://ics-cert.us-cert.gov/advisories/ICSA-13-240-01 | US Government Resource |
http://www.trianglemicroworks.com/documents/mdnp_scl_whats_new.pdf |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
History
No history.
Information
Published : 2013-09-09 11:39
Updated : 2024-02-04 18:16
NVD link : CVE-2013-2794
Mitre link : CVE-2013-2794
CVE.ORG link : CVE-2013-2794
JSON object : View
Products Affected
trianglemicroworks
- .net_communication_protocol_components
- scada_data_gateway
- ansi_c_source_code_libraries
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer