Improper Handling of Length Parameter Inconsistency in Mitsubishi Electric products - CVE-2021-20588

 

Improper Handling of Length Parameter Inconsistency in Mitsubishi Electric products - CVE-2021-20588

Published: February 22, 2021


Vulnerability identifier: #VU50840
CSH Severity: Medium
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2021-20588
CWE-ID: CWE-130
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.

The vulnerability exists due to improper handling of length parameter inconsistency. A remote attacker can spoof MELSEC, GOT or FREQROL, return crafted reply packets and cause a denial of service condition on the target system.


Affected software

MX Component
M_CommDTM-HART
M_CommDTM-IO-Link
MELFA-Works
MELSOFT EM Software Development Kit (EM Configurator)
MELSOFT Navigator
MI Configurator
MT Works2
CPU Module Logging Configuration Tool
RT ToolBox2
RT ToolBox3
SLMP Data Collector
CW Configurator
Mitsubishi Electric FR Configurator2
FR Configurator
FR Configurator SW3
GT Designer3
GX Configurator-DP
GX Configurator-QP
GX Developer
GX LogViewer
GX RemoteService-I
GX Works2
GX Works3
MELSEC WinCPU Setting Utility
MH11 SettingTool Version2
Setting/monitoring tools for the C Controller module
Data Transfer
EZSocket
Network Interface Board CC IE Control utility
Network Interface Board CC IE Field Utility
Network Interface Board CC-Link Ver.2 Utility
Network Interface Board MNETH utility
PX Developer
GT SoftGOT2000 Version1
GT SoftGOT1000 Version3

How to mitigate CVE-2021-20588

Install updates from vendor's website.

GX Configurator-DP - update to 7.15R
GX Works2 - update to 1.600A
GX Works3 - update to 1.072A

External References

Related Security Bulletins