First published: Wed Nov 27 2019(Updated: )
An attacker may use a specially crafted message to force Relion 650 series (versions 1.3.0.5 and prior) or Relion 670 series (versions 1.2.3.18, 2.0.0.11, 2.1.0.1 and prior) to reboot, which could cause a denial of service.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Hitachi Energy Relion 650 Firmware | <=1.3.0.5 | |
Hitachi Energy Relion 650 Firmware | ||
Hitachienergy Relion 670 Firmware | <=1.2.3.18 | |
Hitachi Energy Relion 670 | ||
Hitachienergy Relion 670 Firmware | >=2.0.0<=2.0.0.11 | |
Hitachienergy Relion 670 Firmware | >=2.1.0<=2.1.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-18247 has a severity rating that indicates it can cause a denial of service due to forced reboots of affected devices.
CVE-2019-18247 affects Relion 650 series versions up to 1.3.0.5 and Relion 670 series versions 1.2.3.18, 2.0.0.11, and 2.1.0.1 or prior.
To fix CVE-2019-18247, upgrade the firmware of the Relion 650 and 670 series devices to the latest versions that address this vulnerability.
Yes, CVE-2019-18247 can lead to security risks as it may allow an attacker to disrupt the operation of critical systems by forcing reboots.
If using a vulnerable version related to CVE-2019-18247, it is crucial to implement an immediate firmware update to mitigate the risk of denial of service.