Integer overflow in RNADiagnostics.dll in Rockwell Automation FactoryTalk Services Platform (FTSP) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 allows remote attackers to cause a denial of service (service outage or RNADiagReceiver.exe daemon crash) via UDP data that specifies a large integer value.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Factorytalk_services_platform | Rockwellautomation | cpr9 (including) | cpr9 (including) |
Factorytalk_services_platform | Rockwellautomation | cpr9-sr1 (including) | cpr9-sr1 (including) |
Factorytalk_services_platform | Rockwellautomation | cpr9-sr2 (including) | cpr9-sr2 (including) |
Factorytalk_services_platform | Rockwellautomation | cpr9-sr3 (including) | cpr9-sr3 (including) |
Factorytalk_services_platform | Rockwellautomation | cpr9-sr4 (including) | cpr9-sr4 (including) |
Factorytalk_services_platform | Rockwellautomation | cpr9-sr5 (including) | cpr9-sr5 (including) |
Factorytalk_services_platform | Rockwellautomation | cpr9-sr5.1 (including) | cpr9-sr5.1 (including) |
Factorytalk_services_platform | Rockwellautomation | cpr9-sr6 (including) | cpr9-sr6 (including) |