CWE
119
Advisory Published
Updated

CVE-2013-2794: Buffer Overflow

First published: Mon Sep 09 2013(Updated: )

Triangle MicroWorks SCADA Data Gateway 2.50.0309 through 3.00.0616, DNP3 .NET Protocol components 3.06.0.171 through 3.15.0.369, and DNP3 C libraries 3.06.0000 through 3.15.0000 allow physically proximate attackers to cause a denial of service (infinite loop) via crafted input over a serial line.

Credit: ics-cert@hq.dhs.gov

Affected SoftwareAffected VersionHow to fix
Trianglemicroworks Ansi C Source Code Libraries=3.06.0000
Trianglemicroworks Ansi C Source Code Libraries=3.07.0000
Trianglemicroworks Ansi C Source Code Libraries=3.08.0000
Trianglemicroworks Ansi C Source Code Libraries=3.09.0000
Trianglemicroworks Ansi C Source Code Libraries=3.10.0000
Trianglemicroworks Ansi C Source Code Libraries=3.11.0000
Trianglemicroworks Ansi C Source Code Libraries=3.12.0000
Trianglemicroworks Ansi C Source Code Libraries=3.13.0000
Trianglemicroworks Ansi C Source Code Libraries=3.14.0000
Trianglemicroworks Ansi C Source Code Libraries=3.15.0000
Triangle Microworks .NET Communication Protocol Components=3.06.0.171
Triangle Microworks .NET Communication Protocol Components=3.07.00
Triangle Microworks .NET Communication Protocol Components=3.08.00
Triangle Microworks .NET Communication Protocol Components=3.09.00
Triangle Microworks .NET Communication Protocol Components=3.10.00
Triangle Microworks .NET Communication Protocol Components=3.11.00
Triangle Microworks .NET Communication Protocol Components=3.14.00
Triangle Microworks .NET Communication Protocol Components=3.15.00
Triangle Microworks .NET Communication Protocol Components=3.15.0.369
Triangle MicroWorks SCADA Data Gateway=2.50
Triangle MicroWorks SCADA Data Gateway=2.50.0309
Triangle MicroWorks SCADA Data Gateway=2.51
Triangle MicroWorks SCADA Data Gateway=2.53
Triangle MicroWorks SCADA Data Gateway=2.54.0515
Triangle MicroWorks SCADA Data Gateway=2.54.0516
Triangle MicroWorks SCADA Data Gateway=2.54.0517
Triangle MicroWorks SCADA Data Gateway=2.54.0518
Triangle MicroWorks SCADA Data Gateway=2.54.0528
Triangle MicroWorks SCADA Data Gateway=2.54.0529
Triangle MicroWorks SCADA Data Gateway=2.54.0536
Triangle MicroWorks SCADA Data Gateway=2.54.0540
Triangle MicroWorks SCADA Data Gateway=2.54.0544
Triangle MicroWorks SCADA Data Gateway=2.54.0545
Triangle MicroWorks SCADA Data Gateway=2.54.0552
Triangle MicroWorks SCADA Data Gateway=2.54.0553
Triangle MicroWorks SCADA Data Gateway=2.54.0558
Triangle MicroWorks SCADA Data Gateway=2.54.0561
Triangle MicroWorks SCADA Data Gateway=2.54.0562
Triangle MicroWorks SCADA Data Gateway=2.54.0564
Triangle MicroWorks SCADA Data Gateway=2.54.0565
Triangle MicroWorks SCADA Data Gateway=2.54.0566
Triangle MicroWorks SCADA Data Gateway=2.54.0567
Triangle MicroWorks SCADA Data Gateway=2.54.0569
Triangle MicroWorks SCADA Data Gateway=2.54.0570
Triangle MicroWorks SCADA Data Gateway=2.54.0571
Triangle MicroWorks SCADA Data Gateway=2.54.0572
Triangle MicroWorks SCADA Data Gateway=2.54.0573
Triangle MicroWorks SCADA Data Gateway=2.54.0574
Triangle MicroWorks SCADA Data Gateway=2.54.0575
Triangle MicroWorks SCADA Data Gateway=2.54.0576
Triangle MicroWorks SCADA Data Gateway=2.54.0577
Triangle MicroWorks SCADA Data Gateway=2.54.0578
Triangle MicroWorks SCADA Data Gateway=2.54.0579
Triangle MicroWorks SCADA Data Gateway=2.54.0580
Triangle MicroWorks SCADA Data Gateway=2.54.0581
Triangle MicroWorks SCADA Data Gateway=2.54.0582
Triangle MicroWorks SCADA Data Gateway=2.54.0583
Triangle MicroWorks SCADA Data Gateway=2.54.0584
Triangle MicroWorks SCADA Data Gateway=2.54.0586
Triangle MicroWorks SCADA Data Gateway=2.54.0587
Triangle MicroWorks SCADA Data Gateway=2.54.0588
Triangle MicroWorks SCADA Data Gateway=2.54.0589
Triangle MicroWorks SCADA Data Gateway=2.54.0590
Triangle MicroWorks SCADA Data Gateway=2.54.0591
Triangle MicroWorks SCADA Data Gateway=2.54.0592
Triangle MicroWorks SCADA Data Gateway=2.54.0594
Triangle MicroWorks SCADA Data Gateway=2.54.0595
Triangle MicroWorks SCADA Data Gateway=2.54.0596
Triangle MicroWorks SCADA Data Gateway=2.54.0597
Triangle MicroWorks SCADA Data Gateway=2.54.0598
Triangle MicroWorks SCADA Data Gateway=2.54.0599
Triangle MicroWorks SCADA Data Gateway=3.00
Triangle MicroWorks SCADA Data Gateway=3.00.0616

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2013-2794?

    CVE-2013-2794 has been classified as a denial-of-service vulnerability that can be exploited by physically proximate attackers.

  • How do I fix CVE-2013-2794?

    To mitigate CVE-2013-2794, you should update your Triangle MicroWorks SCADA Data Gateway or related DNP3 components to a fixed version as provided in the vendor's release notes.

  • Who is affected by CVE-2013-2794?

    CVE-2013-2794 affects users of Triangle MicroWorks SCADA Data Gateway versions 2.50.0309 through 3.00.0616 and DNP3 .NET Protocol components in specified versions.

  • What types of attacks can exploit CVE-2013-2794?

    Exploitation of CVE-2013-2794 could lead to a denial of service resulting in an infinite loop condition on affected systems.

  • Is there a workaround for CVE-2013-2794?

    Currently, the recommended solution for CVE-2013-2794 is to apply software updates, as no specific workarounds have been documented.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203