CVE-2018-8834: Buffer Overflow
Parsing malformed project files in Omron CX-One versions 4.42 and prior, including the following applications: CX-FLnet versions 1.00 and prior, CX-Protocol versions 1.992 and prior, CX-Programmer versions 9.65 and prior, CX-Server versions 5.0.22 and prior, Network Configurator versions 3.63 and prior, and Switch Box Utility versions 1.68 and prior, may cause a heap-based buffer overflow.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-8834?
CVE-2018-8834 is a vulnerability that allows an attacker to execute arbitrary code or cause a denial of service by exploiting the parsing of malformed project files in Omron CX-One versions 4.42 and prior.
Which applications are affected by CVE-2018-8834?
The affected applications include CX-FLnet versions 1.00 and prior, CX-Protocol versions 1.992 and prior, CX-Programmer versions 9.65 and prior, CX-Server versions 5.0.22 and prior, and Network Configurator versions 3.63 and prior.
What is the severity of CVE-2018-8834?
CVE-2018-8834 has a severity score of 7.8 (high).
How can I fix CVE-2018-8834?
To fix CVE-2018-8834, it is recommended to update to the latest version of Omron CX-One and the affected applications.
Where can I find more information about CVE-2018-8834?
More information about CVE-2018-8834 can be found at the following reference link: https://ics-cert.us-cert.gov/advisories/ICSA-18-100-02