CVE-2019-16265: Buffer Overflow
Published Oct 25, 2019
·Updated
CODESYS V2.3 ENI server up to V3.2.2.24 has a Buffer Overflow.
Affected Software
2 affected components
CODESYS ENI server<3.2.2.25
CODESYS CODESYS>=2.3<2.3.9.61
Event History
Oct 25, 2019
CVE Published
via MITRE·04:34 PM
Data Sourced
via MITRE·04:34 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-16265?
CVE-2019-16265 is classified as a high severity vulnerability due to the potential for a buffer overflow.
2
How do I fix CVE-2019-16265?
To mitigate CVE-2019-16265, upgrade the CODESYS ENI server to version 3.2.2.25 or later.
3
What does CVE-2019-16265 affect?
CVE-2019-16265 affects CODESYS V2.3 ENI server versions up to 3.2.2.24 and CODESYS versions between 2.3 and 2.3.9.61.
4
What is a buffer overflow as seen in CVE-2019-16265?
A buffer overflow in CVE-2019-16265 occurs when data exceeds the allocated space in memory, potentially allowing code execution.
5
Is CVE-2019-16265 remotely exploitable?
Yes, CVE-2019-16265 can be exploited remotely if the affected service is accessible.