NULL pointer dereference in Siemens products - CVE-2023-28827

 

NULL pointer dereference in Siemens products - CVE-2023-28827

Published: September 17, 2024


Vulnerability identifier: #VU97429
CSH Severity: Medium
CVSS v4: 8.2 [CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2023-28827
CWE-ID: CWE-476
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.

The vulnerability exists due to a NULL pointer dereference error in the web server. A remote attacker can pass specially crafted data to the application and perform a denial of service (DoS) attack.


Affected software

SIMATIC HMI Comfort Panels
SIMATIC IPC DiagBase
SIMATIC IPC DiagMonitor
SIMATIC WinCC Runtime Advanced
SIPLUS TIM 1531 IRC
TIM 1531 IRC
SIMATIC CP 1242-7 V2
SIMATIC CP 1243-1
SIMATIC CP 1243-1 DNP3
SIMATIC CP 1243-1 IEC
SIMATIC CP 1243-7 LTE
SIMATIC CP 1243-8 IRC

How to mitigate CVE-2023-28827

Install updates from vendor's website.

SIPLUS TIM 1531 IRC - update to 2.4.8
TIM 1531 IRC - update to 2.4.8
SIMATIC CP 1242-7 V2 - update to 3.5.20
SIMATIC CP 1243-1 - update to 3.5.20
SIMATIC CP 1243-1 DNP3 - update to 3.5.20
SIMATIC CP 1243-1 IEC - update to 3.5.20
SIMATIC CP 1243-7 LTE - update to 3.5.20
SIMATIC CP 1243-8 IRC - update to 3.5.20

External References

Related Security Bulletins