First published: Mon Jun 25 2018(Updated: )
Improperly implemented option-field processing in the TCP/IP stack on Allen-Bradley L30ERMS safety devices v30 and earlier causes a denial of service. When a crafted TCP packet is received, the device reboots immediately.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Rockwellautomation Allen-bradley L30erms Firmware | <=30 | |
Rockwellautomation Allen-bradley L30erms |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2017-9312 is rated as high with a score of 7.5.
To fix CVE-2017-9312, update the Allen-Bradley L30ERMS firmware to a version newer than v30.
CVE-2017-9312 affects Allen-Bradley L30ERMS safety devices firmware version 30 and earlier.
CVE-2017-9312 is an improper option-field processing vulnerability in the TCP/IP stack.
The impact of CVE-2017-9312 is a denial of service that causes the device to reboot when a crafted TCP packet is received.