Input validation error in Siemens products - CVE-2021-31345

 

Input validation error in Siemens products - CVE-2021-31345

Published: November 10, 2021


Vulnerability identifier: #VU58079
CSH Severity: High
CVSS v4: 8.8 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2021-31345
CWE-ID: CWE-20
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to compromise the target system.

The vulnerability exists due to the total length of an UDP payload (set in the IP header) is unchecked. A remote attacker can pass specially crafted input to the application and perform a denial of service (DoS) attack or gain access to sensitive information on the system.


Affected software

Nucleus NET
Nucleus Source Code
Capital VSTAR
Nucleus ReadyStart
APOGEE MBC (PPC) (P2 Ethernet)
TALON TC Modular (BACnet)
TALON TC Compact (BACnet)
APOGEE PXC Modular (P2 Ethernet)
APOGEE PXC Compact (P2 Ethernet)
APOGEE MBC (PPC) (BACnet)
APOGEE MEC (PPC) (BACnet)
APOGEE PXC Compact (BACnet)
APOGEE PXC Modular (BACnet)
APOGEE MEC (PPC) (P2 Ethernet)
PLUSCONTROL 1st Gen
Google Android

How to mitigate CVE-2021-31345

Install updates from vendor's website.

Nucleus ReadyStart - addressed in versions 4.1.1, 2017.02.4
Google Android - addressed in versions 9 2022-01-05, 10 2022-01-05, 11 2022-01-05, 12 2022-01-05

External References

Related Security Bulletins