First published: Thu Aug 22 2013(Updated: )
The OSIsoft PI Interface for IEEE C37.118 before 1.0.6.158 allows remote attackers to cause a denial of service (memory consumption or memory corruption, instance shutdown, and data-collection outage) via crafted C37.118 configuration packets.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
OSIsoft PI Interface | <=1.0.5.101 | |
OSIsoft PI Interface | =1.0.1.3 | |
OSIsoft PI Interface | =1.0.2.0 | |
OSIsoft PI Interface | =1.0.3.0 | |
OSIsoft PI Interface | =1.0.4.88 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-2800 is classified as a high severity vulnerability due to its potential to cause denial of service.
To fix CVE-2013-2800, upgrade the OSIsoft PI Interface for IEEE C37.118 to version 1.0.6.158 or later.
CVE-2013-2800 exposes the system to denial of service attacks, which can lead to memory consumption and instance shutdown.
Affected versions of OSIsoft PI Interface include all versions prior to 1.0.6.158, specifically 1.0.1.3 through 1.0.5.101.
The impact of CVE-2013-2800 includes memory corruption, instance shutdown, and data-collection outages.