CVE-2013-2821

NovaTech Orion Substation Automation Platform OrionLX DNP Master 1.27.38 and DNP Slave 1.23.10 and earlier and Orion5/Orion5r DNP Master 1.27.38 and DNP Slave 1.23.10 and earlier allow remote attackers to cause a denial of service (driver crash and process restart) via a crafted DNP3 TCP packet.
References
Link Resource
http://ics-cert.us-cert.gov/advisories/ICSA-13-352-01 US Government Resource
Configurations

Configuration 1 (hide)

OR cpe:2.3:h:novatech:orion5_dnp_master:1.27.38:*:*:*:*:*:*:*
cpe:2.3:h:novatech:orion5_dnp_slave:1.23.10:*:*:*:*:*:*:*
cpe:2.3:h:novatech:orion5r_dnp_master:1.27.38:*:*:*:*:*:*:*
cpe:2.3:h:novatech:orion5r_dnp_slave:1.23.10:*:*:*:*:*:*:*
cpe:2.3:h:novatech:orionlx_dnp_master:1.27.38:*:*:*:*:*:*:*
cpe:2.3:h:novatech:orionlx_dnp_slave:1.23.10:*:*:*:*:*:*:*

History

No history.

Information

Published : 2013-12-21 14:22

Updated : 2024-02-04 18:16


NVD link : CVE-2013-2821

Mitre link : CVE-2013-2821

CVE.ORG link : CVE-2013-2821


JSON object : View

Products Affected

novatech

  • orion5_dnp_slave
  • orion5_dnp_master
  • orionlx_dnp_slave
  • orion5r_dnp_slave
  • orionlx_dnp_master
  • orion5r_dnp_master
CWE
CWE-20

Improper Input Validation