Denial of service in Siemens CPC80 Firmware of SICAM A8000 Devices



| Updated: 2022-07-14
Risk Medium
Patch available YES
Number of vulnerabilities 1
CVE-ID CVE-2022-29884
CWE-ID CWE-399
Exploitation vector Network
Public exploit N/A
Vulnerable software
CP-8000 MASTER MODULE WITH I/O -25/+70°C
Hardware solutions / Routers & switches, VoIP, GSM, etc

CP-8000 MASTER MODULE WITH I/O -40/+70°C
Hardware solutions / Routers & switches, VoIP, GSM, etc

CP-8021 MASTER MODULE
Hardware solutions / Routers & switches, VoIP, GSM, etc

CP-8022 MASTER MODULE WITH GPRS
Hardware solutions / Routers & switches, VoIP, GSM, etc

Vendor Siemens

Security Bulletin

This security bulletin contains one medium risk vulnerability.

1) Resource management error

EUVDB-ID: #VU65268

Risk: Medium

CVSSv4.0: 6.6 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Green]

CVE-ID: CVE-2022-29884

CWE-ID: CWE-399 - Resource Management Errors

Exploit availability: No

Description

The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.

The vulnerability exists due to the affected device does not properly free resources. A remote attacker can pass specially crafted data to the application and perform a denial of service (DoS) attack.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

CP-8000 MASTER MODULE WITH I/O -25/+70°C: before 16.30

CP-8000 MASTER MODULE WITH I/O -40/+70°C: before 16.30

CP-8021 MASTER MODULE: before 16.30

CP-8022 MASTER MODULE WITH GPRS: before 16.30

CPE2.3 External links

https://cert-portal.siemens.com/productcert/pdf/ssa-491621.pdficsa-22-195-14


Q & A

Can this vulnerability be exploited remotely?

Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the Internet.

How the attacker can exploit this vulnerability?

The attacker would have to send a specially crafted request to the affected device in order to exploit this vulnerability.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.



###SIDEBAR###