CVE-2021-25667: Buffer Overflow

Published Mar 15, 2021
·
Updated

A vulnerability has been identified in RUGGEDCOM RM1224 (All versions >= V4.3 and < V6.4), SCALANCE M-800 (All versions >= V4.3 and < V6.4), SCALANCE S615 (All versions >= V4.3 and < V6.4), SCALANCE SC-600 Family (All versions >= V2.0 and < V2.1.3), SCALANCE XB-200 (All versions < V4.1), SCALANCE XC-200 (All versions < V4.1), SCALANCE XF-200BA (All versions < V4.1), SCALANCE XM400 (All versions < V6.2), SCALANCE XP-200 (All versions < V4.1), SCALANCE XR-300WG (All versions < V4.1), SCALANCE XR500 (All versions < V6.2). Affected devices contain a stack-based buffer overflow vulnerability in the handling of STP BPDU frames that could allow a remote attacker to trigger a denial-of-service condition or potentially remote code execution. Successful exploitation requires the passive listening feature of the device to be active.

Affected Software

78 affected componentsFixes available
Siemens RUGGEDCOM RM1224: All versions from v4.3 and prior to v4.6
Siemens SCALANCE M-800: All versions from v4.3 and prior to v4.6
Siemens SCALANCE S615: All versions from v4.3 and prior to v4.6
Siemens SCALANCE XR-300WG<4.1
4.1
Siemens SCALANCE XB-200<4.1
4.1
Siemens SCALANCE XC-200<4.1
4.1
Siemens SCALANCE XF-200BA<4.1
4.1
Siemens SCALANCE XP-200<4.1
4.1
Siemens Ruggedcom Rm1224 Firmware>=4.3<6.4
Siemens RUGGEDCOM RM1224
Siemens Scalance M-800 Firmware>=4.3<6.4
Siemens SCALANCE M-800
Siemens Scalance S615 Firmware>=4.3<6.4
Siemens SCALANCE S615
Siemens Scalance X300wg Firmware<4.1
Siemens Scalance X300wg
Siemens Scalance Xm400 Firmware<6.2
Siemens Scalance Xm400
Siemens Scalance Xr500 Firmware<6.2
Siemens Scalance Xr500
Siemens Scalance Sc622-2c Firmware<=2.0
Siemens Scalance Sc622-2c Firmware>=2.1<2.1.3
Siemens Scalance Sc622-2c
Siemens Scalance Sc632-2c Firmware<=2.0
Siemens Scalance Sc632-2c Firmware>=2.1<2.1.3
Siemens Scalance Sc632-2c
Siemens Scalance Sc636-2c Firmware<=2.0
Siemens Scalance Sc636-2c Firmware>=2.1<2.1.3
Siemens Scalance Sc636-2c
Siemens Scalance Sc642-2c Firmware<=2.0
Siemens Scalance Sc642-2c Firmware>=2.1<2.1.3
Siemens Scalance Sc642-2c
Siemens Scalance Sc646-2c Firmware<=2.0
Siemens Scalance Sc646-2c Firmware>=2.1<2.1.3
Siemens Scalance Sc646-2c
Siemens Scalance Xb-200 Firmware<4.1
Siemens SCALANCE XB-200
Siemens Scalance Xc-200 Firmware<4.1
Siemens SCALANCE XC-200
Siemens Scalance Xf-200ba Firmware<4.1
Siemens SCALANCE XF-200BA
Siemens Scalance Xp-200 Firmware<4.1
Siemens SCALANCE XP-200
All of the following
Siemens Ruggedcom Rm1224 Firmware>=4.3<6.4
Siemens RUGGEDCOM RM1224
All of the following
Siemens Scalance M-800 Firmware>=4.3<6.4
Siemens SCALANCE M-800
All of the following
Siemens Scalance S615 Firmware>=4.3<6.4
Siemens SCALANCE S615
All of the following
Siemens Scalance X300wg Firmware<4.1
Siemens Scalance X300wg
All of the following
Siemens Scalance Xm400 Firmware<6.2
Siemens Scalance Xm400
All of the following
Siemens Scalance Xr500 Firmware<6.2
Siemens Scalance Xr500
All of the following
Any of the following
Siemens Scalance Sc622-2c Firmware<=2.0
Siemens Scalance Sc622-2c Firmware>=2.1<2.1.3
Siemens Scalance Sc622-2c
All of the following
Any of the following
Siemens Scalance Sc632-2c Firmware<=2.0
Siemens Scalance Sc632-2c Firmware>=2.1<2.1.3
Siemens Scalance Sc632-2c
All of the following
Any of the following
Siemens Scalance Sc636-2c Firmware<=2.0
Siemens Scalance Sc636-2c Firmware>=2.1<2.1.3
Siemens Scalance Sc636-2c
All of the following
Any of the following
Siemens Scalance Sc642-2c Firmware<=2.0
Siemens Scalance Sc642-2c Firmware>=2.1<2.1.3
Siemens Scalance Sc642-2c
All of the following
Any of the following
Siemens Scalance Sc646-2c Firmware<=2.0
Siemens Scalance Sc646-2c Firmware>=2.1<2.1.3
Siemens Scalance Sc646-2c
All of the following
Siemens Scalance Xb-200 Firmware<4.1
Siemens SCALANCE XB-200
All of the following
Siemens Scalance Xc-200 Firmware<4.1
Siemens SCALANCE XC-200
All of the following
Siemens Scalance Xf-200ba Firmware<4.1
Siemens SCALANCE XF-200BA
All of the following
Siemens Scalance Xp-200 Firmware<4.1
Siemens SCALANCE XP-200

Event History

Mar 15, 2021
CVE Published
via MITRE·05:03 PM
Data Sourced
via MITRE·05:03 PM
DescriptionWeakness
Data Sourced
via NVD·05:15 PM
RemedyDescriptionSeverityWeaknessAffected Software

Parent advisories

This vulnerability appears in the following advisories.

Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the vulnerability ID for this vulnerability?

The vulnerability ID for this vulnerability is CVE-2021-25667.

2

What software is affected by this vulnerability?

The RUGGEDCOM RM1224, SCALANCE M-800, SCALANCE S615, SCALANCE SC-600 Family, SCALANCE XB-200, SCALANCE XC-200, SCALANCE XF-200ba, and SCALANCE XP-200 are affected by this vulnerability.

3

What is the severity of CVE-2021-25667?

The severity of CVE-2021-25667 is high, with a CVSS score of 8.8.

4

What is the CWE ID for this vulnerability?

The CWE ID for this vulnerability is CWE-119, CWE-121, and CWE-787.

5

Are there any resources for more information about this vulnerability?

Yes, you can find more information about this vulnerability in the Siemens Product CERT document and the US-CERT advisory.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203