CVE-2012-0221: Input Validation
The FactoryTalk (FT) RNADiagReceiver service in Rockwell Automation Allen-Bradley FactoryTalk CPR9 through SR5 and RSLogix 5000 17 through 20 does not properly handle the return value from an unspecified function, which allows remote attackers to cause a denial of service (service outage) via a crafted packet.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-0221?
CVE-2012-0221 has a severity rating that indicates a denial of service vulnerability affecting specific versions of FactoryTalk and RSLogix 5000.
How do I fix CVE-2012-0221?
To mitigate CVE-2012-0221, you should apply the latest security patches provided by Rockwell Automation for affected software versions.
What versions are affected by CVE-2012-0221?
CVE-2012-0221 affects Rockwell Automation FactoryTalk CPR9 through SR5 and RSLogix 5000 versions 17 through 20.
What types of attacks can result from CVE-2012-0221?
CVE-2012-0221 can be exploited by remote attackers to cause a denial of service, resulting in service outages.
Who can be impacted by CVE-2012-0221?
Organizations using the specified versions of Rockwell Automation's FactoryTalk and RSLogix 5000 software may be impacted by CVE-2012-0221.