AVEVA Vijeo Citect and Citect stack buffer overflow vulnerability

AVEVA Vijeo Citect and Citect stack buffer overflow vulnerability


Release Date: 2019-10-22
Updated: 2019-10-23

Affected Systems:

AVEVA IEC870IP <= v4.14.02

description:


CVE (the CAN) ID: CVE-2019-13537

Schneider Electric the AVEVA the Vijeo the Citect is a SCADA (SCADA) software. Schneider Electric AVEVA Citect SCADA is a SCADA (SCADA) software.

Vijeo Citect and Citect SCADA presence of IEC870IP driver buffer overflow, might cause the server crashes. This vulnerability only affects IEC870IP driver, without affecting the core or Vijeo Citect Citect SCADA software.

<* Source: VAPT Team
  *>

suggestions:


Manufacturers patch:

AVEVA
-----
Current vendors have released an updated patch to fix the security issue, please go to the manufacturer's home page to download:

https://softwaresupportsp.aveva.com/#/connectivityhub/details?id=52869

Guess you like

Origin www.linuxidc.com/Linux/2019-10/161126.htm