CVE-2021-32979: AVEVA SuiteLink Server Null Pointer Dereference
Published Sep 23, 2021
·Updated
Null pointer dereference in SuiteLink server while processing commands 0x04/0x0a
Affected Software
1 affected component
AVEVA SuiteLink<3.2.002
Remediation
Information
AVEVA recommends organizations evaluate the impact of these vulnerabilities based on their operational environment, architecture, and product implementation.
Users with affected versions of these products should apply the corresponding security update. Note a subset of the updates requires activation-based licensing.
Please see AVEVA security bulletin AVEVA-2021-003 for more information.
Event History
Sep 23, 2021
CVE Published
via MITRE·01:32 PM
Data Sourced
via MITRE·01:32 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2021-32979?
CVE-2021-32979 is a vulnerability that involves a null pointer dereference in the SuiteLink server while processing commands 0x04/0x0a.
2
What is the severity of CVE-2021-32979?
CVE-2021-32979 has a severity rating of 7.5 (high).
3
Which software is affected by CVE-2021-32979?
The Aveva Suitelink software up to version 3.2.002 is affected by CVE-2021-32979.
4
How can I fix CVE-2021-32979?
Currently, there is no known fix or patch available for CVE-2021-32979. It is recommended to follow the mitigation steps provided by Aveva in their security bulletin.
5
Where can I find more information about CVE-2021-32979?
More information about CVE-2021-32979 can be found in the security bulletin provided by Aveva: [link](https://www.aveva.com/content/dam/aveva/documents/support/cyber-security-updates/SecurityBulletin_AVEVA-2021-003.pdf).