Buffer overflow in Siemens products - CVE-2021-31882

 

Buffer overflow in Siemens products - CVE-2021-31882

Published: November 10, 2021


Vulnerability identifier: #VU58082
CSH Severity: Low
CVSS v4: 7.1 [CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2021-31882
CWE-ID: CWE-119
Exploitation vector: Adjecent network
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.

The vulnerability exists due to a boundary error in the DHCP client application when processing DHCP ACK packets. A remote attacker on the local network can trigger memory corruption and cause a denial of service condition on the target system.


Affected software

Nucleus NET
Nucleus Source Code
Capital VSTAR
Nucleus ReadyStart
APOGEE MBC (PPC) (BACnet)
APOGEE MBC (PPC) (P2 Ethernet)
APOGEE MEC (PPC) (BACnet)
APOGEE MEC (PPC) (P2 Ethernet)
APOGEE PXC Compact (BACnet)
APOGEE PXC Compact (P2 Ethernet)
APOGEE PXC Modular (BACnet)
APOGEE PXC Modular (P2 Ethernet)
TALON TC Compact (BACnet)
TALON TC Modular (BACnet)

How to mitigate CVE-2021-31882

Install updates from vendor's website.

Nucleus ReadyStart - addressed in versions 4.1.1, 2017.02.4

External References

Related Security Bulletins