First published: Sun Aug 17 2014(Updated: )
Siemens SIMATIC S7-1500 CPU devices with firmware before 1.6 allow remote attackers to cause a denial of service (device restart and STOP transition) via crafted TCP packets.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Siemens S7-1500 CPU firmware | <=1.5.1 | |
Siemens S7-1500 CPU firmware | =1.0.1 | |
Siemens S7-1500 CPU firmware | =1.1.0 | |
Siemens S7-1500 CPU firmware | =1.1.1 | |
Siemens S7-1500 CPU firmware | =1.1.2 | |
Siemens S7-1500 CPU firmware | =1.5 | |
Siemens SIMATIC S7-1511-1 PN CPU | ||
Siemens SIMATIC S7-1513-1 PN CPU | ||
Siemens SIMATIC S7-1515-2 PN CPU | ||
Siemens SIMATIC s7-1516-3 pn/dp CPU | ||
Siemens SIMATIC s7-1516f-3 pn/dp CPU | ||
Siemens SIMATIC S7-1518-4 PN/DP CPU | ||
Siemens SIMATIC s7-1518f-4 pn/dp CPU |
http://www.siemens.com/innovation/pool/de/forschungsfelder/siemens_security_advisory_ssa-310688.pdf
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-5074 is classified as a critical vulnerability due to its potential to cause a denial of service.
To mitigate CVE-2014-5074, upgrade the Siemens SIMATIC S7-1500 CPU firmware to version 1.6 or later.
CVE-2014-5074 is associated with denial of service attacks through crafted TCP packets.
CVE-2014-5074 affects Siemens SIMATIC S7-1500 CPU devices with firmware versions prior to 1.6.
If exploited, CVE-2014-5074 allows remote attackers to restart the device and cause a STOP transition.