CVE Vulnerabilities

CVE-2019-9009

Improper Handling of Exceptional Conditions

Published: Sep 17, 2019 | Modified: Jan 01, 2022
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

An issue was discovered in 3S-Smart CODESYS before 3.5.15.0 . Crafted network packets cause the Control Runtime to crash.

Weakness

The product does not handle or incorrectly handles an exceptional condition.

Affected Software

Name Vendor Start Version End Version
Control_for_beaglebone Codesys * 3.5.15.0 (excluding)
Control_for_empc-a/imx6 Codesys * 3.5.15.0 (excluding)
Control_for_iot2000 Codesys * 3.5.15.0 (excluding)
Control_for_pfc100 Codesys * 3.5.15.0 (excluding)
Control_for_pfc200 Codesys * 3.5.15.0 (excluding)
Control_for_raspberry_pi Codesys * 3.5.15.0 (excluding)
Control_rte Codesys * 3.5.15.0 (excluding)
Control_win Codesys * 3.5.15.0 (excluding)
Gateway Codesys * 3.5.15.0 (excluding)
Hmi Codesys * 3.5.15.0 (excluding)
Linux Codesys * 3.5.15.0 (excluding)
Runtime_system_toolkit Codesys * 3.5.15.0 (excluding)
Safety_sil2 Codesys * 3.5.15.0 (excluding)
Simulation_runtime Codesys * 3.5.15.0 (excluding)

References