CVE-2012-4714: Integer Overflow
Integer overflow in RNADiagnostics.dll in Rockwell Automation FactoryTalk Services Platform (FTSP) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 allows remote attackers to cause a denial of service (service outage or RNADiagReceiver.exe daemon crash) via UDP data that specifies a large integer value.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-4714?
CVE-2012-4714 has a medium severity rating due to its potential to cause denial of service.
How do I fix CVE-2012-4714?
To fix CVE-2012-4714, upgrade to a patched version of the Rockwell Automation FactoryTalk Services Platform.
What systems are affected by CVE-2012-4714?
CVE-2012-4714 affects multiple versions of Rockwell Automation FactoryTalk Services Platform including CPR9 through CPR9-SR6.
What type of vulnerability is CVE-2012-4714?
CVE-2012-4714 is an integer overflow vulnerability that can lead to application crashes.
Can CVE-2012-4714 be exploited remotely?
Yes, CVE-2012-4714 can be exploited remotely through UDP data packets.