CVE-2013-2828: Input Validation
Published Apr 12, 2014
·Updated
The DNP Master Driver in the OSIsoft PI Interface before 3.1.2.54 for DNP3 allows physically proximate attackers to cause a denial of service (interface shutdown) via crafted input over a serial line.
Affected Software
1 affected component
OSIsoft PI Interface<=3.1.2
Event History
Apr 12, 2014
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Data Sourced
via NVD·04:37 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2013-2828?
CVE-2013-2828 has a high severity rating due to its potential to cause a denial of service.
2
How do I fix CVE-2013-2828?
To fix CVE-2013-2828, update the OSIsoft PI Interface to version 3.1.2.54 or later.
3
What type of attacks can exploit CVE-2013-2828?
CVE-2013-2828 can be exploited by physically proximate attackers sending crafted input over a serial line.
4
What systems are affected by CVE-2013-2828?
CVE-2013-2828 affects OSIsoft PI Interface versions up to 3.1.2.
5
What is the impact of CVE-2013-2828 on operational infrastructure?
The impact of CVE-2013-2828 includes the potential shutdown of the DNP Master Driver, leading to a loss in communication.