CVE-2020-27827: High severity : Siemens SIMATIC HMI Unified Comfort Panels vulnerability

Published Jan 13, 2021
·
Updated

A flaw was found in multiple versions of Open vSwitch. Specially crafted LLDP packets can cause memory to be lost when allocating data to handle specific optional TLVs, potentially causing a denial of service. The highest threat from this vulnerability is to system availability.

Other sources

A flaw was found in multiple versions of OpenvSwitch. Specially crafted LLDP packets can cause memory to be lost when allocating data to handle specific optional TLVs, potentially causing a denial of service. The highest threat from this vulnerability is to system availability.

Multiple versions of Open vSwitch are vulnerable to denial of service attacks in which crafted LLDP packets could cause memory to be lost when allocating data to handle specific optional TLVs. Triggering the vulnerability requires LLDP processing to be enabled for a specific port. Open vSwitch versions before 2.5.x are not vulnerable.

References:

https://mail.openvswitch.org/pipermail/ovs-dev/2021-January/379471.html https://github.com/lldpd/lldpd/commit/a8d3c90feca548fc0656d95b5d278713db86ff61

Red Hat

Affected Software

84 affected componentsFixes available
redhat/openvswitch2.11<0:2.11.3-86.el7fd
0:2.11.3-86.el7fd
redhat/openvswitch2.13<0:2.13.0-81.el7fd
0:2.13.0-81.el7fd
redhat/openvswitch<0:2.9.9-1.el7fd
0:2.9.9-1.el7fd
redhat/openvswitch2.13<0:2.13.0-79.5.el8fd
0:2.13.0-79.5.el8fd
redhat/openvswitch2.11<0:2.11.3-83.el8fd
0:2.11.3-83.el8fd
redhat/ovn2.11<0:2.11.1-57.el7fd
0:2.11.1-57.el7fd
redhat/redhat-virtualization-host<0:4.3.14-20210322.0.el7_9
0:4.3.14-20210322.0.el7_9
redhat/redhat-virtualization-host<0:4.4.4-20210307.0.el8_3
0:4.4.4-20210307.0.el8_3
debian/openvswitch<=2.10.0+2018.08.28+git.8ca7c82b7d+ds1-12, <=2.15.0~git20210104.def6eb1ea+dfsg1-3, <=2.10.0+2018.08.28+git.8ca7c82b7d+ds1-12+deb10u2
debian/lldpd<=1.0.3-1
1.0.3-1+deb10u21.0.11-1+deb11u21.0.16-1+deb12u11.0.17-1
debian/openvswitch
2.10.7+ds1-0+deb10u12.10.7+ds1-0+deb10u42.15.0+ds1-2+deb11u43.1.0-23.2.0-2
redhat/lldpd<1.0.8
1.0.8
redhat/openvswitch<2.14.1
2.14.1
redhat/openvswitch<2.13.2
2.13.2
redhat/openvswitch<2.12.2
2.12.2
redhat/openvswitch<2.11.5
2.11.5
redhat/openvswitch<2.10.6
2.10.6
redhat/openvswitch<2.9.8
2.9.8
redhat/openvswitch<2.8.10
2.8.10
redhat/openvswitch<2.7.12
2.7.12
redhat/openvswitch<2.6.9
2.6.9
: Siemens SIMATIC HMI Unified Comfort Panels<17
17
: Siemens SIMATIC NET CP 1542SP-1 (6GK7542-6UX00-0XE0)
: Siemens SIMATIC NET CP 1542SP-1 IRC (incl. SIPLUS variants) (6GK7243-8RX30-0XE0)
: Siemens SIMATIC NET CP 1543-1 (incl. SIPLUS variants)
: Siemens SIMATIC NET CP 1543SP-1 (incl. SIPLUS variants)
: Siemens SIMATIC NET CP 1545-1 (6GK7545-1GX00-0XE0)<1.1
1.1
Lldpd Project Lldpd<1.0.8
Openvswitch OpenvSwitch>=2.6.0<2.6.9
Openvswitch OpenvSwitch>=2.7.0<2.7.12
Openvswitch OpenvSwitch>=2.8.0<2.8.10
Openvswitch OpenvSwitch>=2.9.0<2.9.8
Openvswitch OpenvSwitch>=2.10.0<2.10.6
Openvswitch OpenvSwitch>=2.11.0<2.11.5
Openvswitch OpenvSwitch>=2.12.0<2.12.2
Openvswitch OpenvSwitch>=2.13.0<2.13.2
Openvswitch OpenvSwitch>=2.14.0<2.14.1
redhat OpenShift Container Platform=4.0
redhat Openstack=10
redhat Openstack=13
redhat Virtualization=4.0
redhat Enterprise Linux=7.0
redhat Enterprise Linux=8.0
Fedoraproject Fedora=33
All of the following
Siemens Simatic Hmi Unified Comfort Panels
Siemens Simatic Hmi Unified Comfort Panels Firmware<17
All of the following
Siemens Simatic Net Cp 1243-1
Siemens Simatic Net Cp 1243-1 Firmware
All of the following
Siemens Simatic Net Cp 1243-8 Irc
Siemens Simatic Net Cp 1243-8 Irc Firmware
All of the following
Siemens Simatic Net Cp 1542sp-1
Siemens Simatic Net Cp 1542sp-1 Firmware
All of the following
Siemens Simatic Net Cp 1542sp-1 Irc
Siemens Simatic Net Cp 1542sp-1 Irc Firmware
All of the following
Siemens Simatic Net Cp 1543-1
Siemens Simatic Net Cp 1543-1 Firmware
All of the following
Siemens Simatic Net Cp 1543sp-1
Siemens Simatic Net Cp 1543sp-1 Firmware
All of the following
Siemens Simatic Net Cp 1545-1 Firmware
Siemens Simatic Net Cp 1545-1
All of the following
Siemens Tim 1531 Irc Firmware<2.2
Siemens TIM 1531 IRC
All of the following
Siemens Sinumerik One Firmware<2.0.1
Siemens Sinumerik One
Siemens Simatic Hmi Unified Comfort Panels Firmware<17
Siemens Simatic Hmi Unified Comfort Panels
Siemens Simatic Net Cp 1243-1 Firmware
Siemens Simatic Net Cp 1243-1
Siemens Simatic Net Cp 1243-8 Irc Firmware
Siemens Simatic Net Cp 1243-8 Irc
Siemens Simatic Net Cp 1542sp-1 Firmware
Siemens Simatic Net Cp 1542sp-1
Siemens Simatic Net Cp 1542sp-1 Irc Firmware
Siemens Simatic Net Cp 1542sp-1 Irc
Siemens Simatic Net Cp 1543-1 Firmware
Siemens Simatic Net Cp 1543-1
Siemens Simatic Net Cp 1543sp-1 Firmware
Siemens Simatic Net Cp 1543sp-1
Siemens Simatic Net Cp 1545-1 Firmware
Siemens Simatic Net Cp 1545-1
Siemens Tim 1531 Irc Firmware<2.2
Siemens TIM 1531 IRC
Siemens Sinumerik One Firmware<2.0.1
Siemens Sinumerik One

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Upgrade

    Upgrade redhat/openvswitch2.11 to a version that resolves this vulnerability.

    Fixed in 0:2.11.3-86.el7fd
  2. Upgrade

    Upgrade redhat/openvswitch2.13 to a version that resolves this vulnerability.

    Fixed in 0:2.13.0-81.el7fd
  3. Upgrade

    Upgrade redhat/openvswitch to a version that resolves this vulnerability.

    Fixed in 0:2.9.9-1.el7fd
  4. Upgrade

    Upgrade redhat/openvswitch2.13 to a version that resolves this vulnerability.

    Fixed in 0:2.13.0-79.5.el8fd
  5. Upgrade

    Upgrade redhat/openvswitch2.11 to a version that resolves this vulnerability.

    Fixed in 0:2.11.3-83.el8fd
  6. Upgrade

    Upgrade redhat/ovn2.11 to a version that resolves this vulnerability.

    Fixed in 0:2.11.1-57.el7fd
  7. Upgrade

    Upgrade redhat/redhat-virtualization-host to a version that resolves this vulnerability.

    Fixed in 0:4.3.14-20210322.0.el7_9
  8. Upgrade

    Upgrade redhat/redhat-virtualization-host to a version that resolves this vulnerability.

    Fixed in 0:4.4.4-20210307.0.el8_3
  9. Upgrade

    Upgrade debian/lldpd to a version that resolves this vulnerability.

    Fixed in 1.0.3-1+deb10u2Fixed in 1.0.11-1+deb11u2Fixed in 1.0.16-1+deb12u1Fixed in 1.0.17-1
  10. Upgrade

    Upgrade debian/openvswitch to a version that resolves this vulnerability.

    Fixed in 2.10.7+ds1-0+deb10u1Fixed in 2.10.7+ds1-0+deb10u4Fixed in 2.15.0+ds1-2+deb11u4Fixed in 3.1.0-2Fixed in 3.2.0-2
  11. Upgrade

    Upgrade Siemens SIMATIC HMI Unified Comfort Panels to a version that resolves this vulnerability.

    Fixed in 17
  12. Upgrade

    Upgrade Siemens SIMATIC NET CP 1545-1 to a version that resolves this vulnerability.

    Fixed in 1.1
  13. Upgrade

    Upgrade redhat/lldpd to a version that resolves this vulnerability.

    Fixed in 1.0.8
  14. Upgrade

    Upgrade redhat/openvswitch to a version that resolves this vulnerability.

    Fixed in 2.14.1
  15. Upgrade

    Upgrade redhat/openvswitch to a version that resolves this vulnerability.

    Fixed in 2.13.2
  16. Upgrade

    Upgrade redhat/openvswitch to a version that resolves this vulnerability.

    Fixed in 2.12.2
  17. Upgrade

    Upgrade redhat/openvswitch to a version that resolves this vulnerability.

    Fixed in 2.11.5
  18. Upgrade

    Upgrade redhat/openvswitch to a version that resolves this vulnerability.

    Fixed in 2.10.6
  19. Upgrade

    Upgrade redhat/openvswitch to a version that resolves this vulnerability.

    Fixed in 2.9.8
  20. Upgrade

    Upgrade redhat/openvswitch to a version that resolves this vulnerability.

    Fixed in 2.8.10
  21. Upgrade

    Upgrade redhat/openvswitch to a version that resolves this vulnerability.

    Fixed in 2.7.12
  22. Upgrade

    Upgrade redhat/openvswitch to a version that resolves this vulnerability.

    Fixed in 2.6.9

Event History

Jan 13, 2021
CVE Published
12:00 AM
Jan 28, 2021
Data Sourced
via Red Hat·02:00 AM
DescriptionSeverityAffected Software
Mar 18, 2021
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Data Sourced
via NVD·05:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2020-27827?

CVE-2020-27827 has a high severity rating due to its potential to cause denial of service through memory loss.

2

How do I fix CVE-2020-27827?

To mitigate CVE-2020-27827, upgrade to the fixed versions of OpenvSwitch as specified in the remediation guidance.

3

Which versions of OpenvSwitch are affected by CVE-2020-27827?

CVE-2020-27827 affects multiple versions of OpenvSwitch, specifically those prior to the specified fixed releases.

4

What systems are at risk from CVE-2020-27827?

Systems running vulnerable versions of OpenvSwitch are at risk of denial of service due to this vulnerability.

5

Is CVE-2020-27827 exploitable over the network?

Yes, CVE-2020-27827 can be exploited through specially crafted LLDP packets sent over the network.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203