Lucene search

K
cveIcscertCVE-2012-4714
HistoryApr 18, 2013 - 2:25 a.m.

CVE-2012-4714

2013-04-1802:25:36
CWE-189
icscert
web.nvd.nist.gov
29
cve-2012-4714
integer overflow
rnadiagnostics.dll
rockwell automation
factorytalk services platform
ftsp
cpr9-sr1
cpr9-sr2
cpr9-sr3
cpr9-sr4
cpr9-sr5
cpr9-sr5.1
cpr9-sr6
denial of service
nvd

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

AI Score

7.1

Confidence

High

EPSS

0.001

Percentile

36.1%

Integer overflow in RNADiagnostics.dll in Rockwell Automation FactoryTalk Services Platform (FTSP) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 allows remote attackers to cause a denial of service (service outage or RNADiagReceiver.exe daemon crash) via UDP data that specifies a large integer value.

Affected configurations

Nvd
Node
rockwellautomationfactorytalk_services_platformMatchcpr9
OR
rockwellautomationfactorytalk_services_platformMatchcpr9sr1
OR
rockwellautomationfactorytalk_services_platformMatchcpr9sr2
OR
rockwellautomationfactorytalk_services_platformMatchcpr9sr3
OR
rockwellautomationfactorytalk_services_platformMatchcpr9sr4
OR
rockwellautomationfactorytalk_services_platformMatchcpr9sr5
OR
rockwellautomationfactorytalk_services_platformMatchcpr9sr5.1
OR
rockwellautomationfactorytalk_services_platformMatchcpr9sr6
VendorProductVersionCPE
rockwellautomationfactorytalk_services_platformcpr9cpe:2.3:a:rockwellautomation:factorytalk_services_platform:cpr9:*:*:*:*:*:*:*
rockwellautomationfactorytalk_services_platformcpr9cpe:2.3:a:rockwellautomation:factorytalk_services_platform:cpr9:sr1:*:*:*:*:*:*
rockwellautomationfactorytalk_services_platformcpr9cpe:2.3:a:rockwellautomation:factorytalk_services_platform:cpr9:sr2:*:*:*:*:*:*
rockwellautomationfactorytalk_services_platformcpr9cpe:2.3:a:rockwellautomation:factorytalk_services_platform:cpr9:sr3:*:*:*:*:*:*
rockwellautomationfactorytalk_services_platformcpr9cpe:2.3:a:rockwellautomation:factorytalk_services_platform:cpr9:sr4:*:*:*:*:*:*
rockwellautomationfactorytalk_services_platformcpr9cpe:2.3:a:rockwellautomation:factorytalk_services_platform:cpr9:sr5:*:*:*:*:*:*
rockwellautomationfactorytalk_services_platformcpr9cpe:2.3:a:rockwellautomation:factorytalk_services_platform:cpr9:sr5.1:*:*:*:*:*:*
rockwellautomationfactorytalk_services_platformcpr9cpe:2.3:a:rockwellautomation:factorytalk_services_platform:cpr9:sr6:*:*:*:*:*:*

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

AI Score

7.1

Confidence

High

EPSS

0.001

Percentile

36.1%

Related for CVE-2012-4714