CVE-2021-27498: EIPStackGroup OpENer Ethernet/IP Reachable Assertion
A specifically crafted packet sent by an attacker to EIPStackGroup OpENer EtherNet/IP commits and versions prior to Feb 10, 2021 may result in a denial-of-service condition.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2021-27498?
CVE-2021-27498 is a vulnerability in EIPStackGroup OpENer EtherNet/IP that allows an attacker to cause a denial-of-service condition.
How does CVE-2021-27498 affect OpENer EtherNet/IP?
CVE-2021-27498 affects OpENer EtherNet/IP versions prior to Feb 10, 2021 and may result in a denial-of-service condition when a specially crafted packet is sent by an attacker.
What is the severity of CVE-2021-27498?
CVE-2021-27498 has a severity rating of 7.5 (high).
How can I fix CVE-2021-27498?
To fix CVE-2021-27498, update EIPStackGroup OpENer EtherNet/IP to version 2.3 or later.
Where can I find more information about CVE-2021-27498?
You can find more information about CVE-2021-27498 at the following references: [GitHub](https://github.com/EIPStackGroup/OpENer) and [CISA Advisory](https://www.cisa.gov/uscert/ics/advisories/icsa-21-105-02).