CVE-2012-4713: High severity rockwellautomation Factorytalk Services Platform vulnerability
Integer signedness error in RNADiagnostics.dll in Rockwell Automation FactoryTalk Services Platform (FTSP) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 allows remote attackers to cause a denial of service (service outage or RNADiagReceiver.exe daemon crash) via UDP data that specifies a negative integer value.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-4713?
CVE-2012-4713 has a high severity rating due to its potential to cause a denial of service.
How do I fix CVE-2012-4713?
To fix CVE-2012-4713, update your Rockwell Automation FactoryTalk Services Platform to the latest available version.
What are the affected versions for CVE-2012-4713?
CVE-2012-4713 affects Rockwell Automation FactoryTalk Services Platform versions CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6.
What is the nature of the vulnerability in CVE-2012-4713?
CVE-2012-4713 is caused by an integer signedness error in RNADiagnostics.dll, leading to potential service outages.
Who are the potential attackers for CVE-2012-4713?
Remote attackers can exploit CVE-2012-4713 to crash the RNADiagReceiver.exe daemon.