CVE Vulnerabilities

CVE-2023-22435

Incorrect Comparison

Published: Jul 13, 2023 | Modified: Nov 21, 2024
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Experion server may experience a DoS due to a stack overflow when handling a specially crafted message.

Weakness

The product compares two entities in a security-relevant context, but the comparison is incorrect, which may lead to resultant weaknesses.

Affected Software

Name Vendor Start Version End Version
Experion_server Honeywell 501.1 (including) 501.6hf8 (including)
Experion_server Honeywell 510.1 (including) 510.2hf12 (including)
Experion_server Honeywell 511.1 (including) 511.5tcu3 (including)
Experion_server Honeywell 520.1 (including) 520.1tcu4 (including)
Experion_server Honeywell 520.2 (including) 520.2tcu2 (including)

Extended Description

This Pillar covers several possibilities:

References