A vulnerability in the implementation of Common Industrial Protocol (CIP) functionality in Cisco Industrial Ethernet 2000 Series Switches could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition due to a system memory leak. More Information: CSCvc54788. Known Affected Releases: 15.2(5.4.32i)E2. Known Fixed Releases: 15.2(5.4.62i)E2.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/95946 | Third Party Advisory VDB Entry |
http://www.securitytracker.com/id/1037771 | |
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170201-psc1 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
No history.
Information
Published : 2017-02-03 07:59
Updated : 2024-02-04 19:11
NVD link : CVE-2017-3812
Mitre link : CVE-2017-3812
CVE.ORG link : CVE-2017-3812
JSON object : View
Products Affected
cisco
- industrial_ethernet_2000_8tc-g-e_switch
- industrial_ethernet_2000_4ts-g-l_switch
- industrial_ethernet_2000_4t-l_switch
- industrial_ethernet_2000_16ptc-g-e_switch
- industrial_ethernet_2000_series_firmware
- industrial_ethernet_2000_8t67p-g-e_switch
- industrial_ethernet_2000_8tc-g-n_switch
- industrial_ethernet_2000_8tc-g-l_switch
- industrial_ethernet_2000_4t-g-l_switch
- industrial_ethernet_2000_24t67-b_switch
- industrial_ethernet_2000_16tc-g-n_switch
- industrial_ethernet_2000_16tc-l_switch
- industrial_ethernet_2000_16tc-g-x_switch
- industrial_ethernet_2000_8tc-b_switch
- industrial_ethernet_2000_16t67p-g-e_switch
- industrial_ethernet_2000_4ts-l_switch
- industrial_ethernet_2000_16ptc-g-l_switch
- industrial_ethernet_2000_4s-ts-g-l_switch
- industrial_ethernet_2000_16t67-b_switch
- industrial_ethernet_2000_8tc-l_switch
- industrial_ethernet_2000_8tc-g-b_switch
- industrial_ethernet_2000_4ts-b_switch
- industrial_ethernet_2000_4ts-g-b_switch
- industrial_ethernet_2000_4t-b_switch
- industrial_ethernet_2000_4t-g-b_switch
- industrial_ethernet_2000_16tc-g-l_switch
- industrial_ethernet_2000_8t67-b_switch
- industrial_ethernet_2000_16tc-g-e_switch
- industrial_ethernet_2000_4s-ts-g-b_switch
- industrial_ethernet_2000_16ptc-g-nx_switch
CWE
CWE-772
Missing Release of Resource after Effective Lifetime