Lucene search

K
cveIcscertCVE-2012-4713
HistoryApr 18, 2013 - 2:25 a.m.

CVE-2012-4713

2013-04-1802:25:36
CWE-189
icscert
web.nvd.nist.gov
33
cve-2012-4713
integer signedness error
rnadiagnostics.dll
rockwell automation
factorytalk services platform
ftsp
cpr9
denial of service
remote attack
udp data

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

AI Score

6.8

Confidence

High

EPSS

0.001

Percentile

36.1%

Integer signedness error in RNADiagnostics.dll in Rockwell Automation FactoryTalk Services Platform (FTSP) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 allows remote attackers to cause a denial of service (service outage or RNADiagReceiver.exe daemon crash) via UDP data that specifies a negative integer value.

Affected configurations

Nvd
Node
rockwellautomationfactorytalk_services_platformMatchcpr9
OR
rockwellautomationfactorytalk_services_platformMatchcpr9sr1
OR
rockwellautomationfactorytalk_services_platformMatchcpr9sr2
OR
rockwellautomationfactorytalk_services_platformMatchcpr9sr3
OR
rockwellautomationfactorytalk_services_platformMatchcpr9sr4
OR
rockwellautomationfactorytalk_services_platformMatchcpr9sr5
OR
rockwellautomationfactorytalk_services_platformMatchcpr9sr5.1
OR
rockwellautomationfactorytalk_services_platformMatchcpr9sr6
VendorProductVersionCPE
rockwellautomationfactorytalk_services_platformcpr9cpe:2.3:a:rockwellautomation:factorytalk_services_platform:cpr9:*:*:*:*:*:*:*
rockwellautomationfactorytalk_services_platformcpr9cpe:2.3:a:rockwellautomation:factorytalk_services_platform:cpr9:sr1:*:*:*:*:*:*
rockwellautomationfactorytalk_services_platformcpr9cpe:2.3:a:rockwellautomation:factorytalk_services_platform:cpr9:sr2:*:*:*:*:*:*
rockwellautomationfactorytalk_services_platformcpr9cpe:2.3:a:rockwellautomation:factorytalk_services_platform:cpr9:sr3:*:*:*:*:*:*
rockwellautomationfactorytalk_services_platformcpr9cpe:2.3:a:rockwellautomation:factorytalk_services_platform:cpr9:sr4:*:*:*:*:*:*
rockwellautomationfactorytalk_services_platformcpr9cpe:2.3:a:rockwellautomation:factorytalk_services_platform:cpr9:sr5:*:*:*:*:*:*
rockwellautomationfactorytalk_services_platformcpr9cpe:2.3:a:rockwellautomation:factorytalk_services_platform:cpr9:sr5.1:*:*:*:*:*:*
rockwellautomationfactorytalk_services_platformcpr9cpe:2.3:a:rockwellautomation:factorytalk_services_platform:cpr9:sr6:*:*:*:*:*:*

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

AI Score

6.8

Confidence

High

EPSS

0.001

Percentile

36.1%

Related for CVE-2012-4713