First published: Thu Sep 23 2021(Updated: )
Null pointer dereference in SuiteLink server while processing commands 0x04/0x0a
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Aveva Suitelink | <3.2.002 |
AVEVA recommends organizations evaluate the impact of these vulnerabilities based on their operational environment, architecture, and product implementation. Users with affected versions of these products should apply the corresponding security update. Note a subset of the updates requires activation-based licensing. Please see AVEVA security bulletin AVEVA-2021-003 for more information.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-32979 is a vulnerability that involves a null pointer dereference in the SuiteLink server while processing commands 0x04/0x0a.
CVE-2021-32979 has a severity rating of 7.5 (high).
The Aveva Suitelink software up to version 3.2.002 is affected by CVE-2021-32979.
Currently, there is no known fix or patch available for CVE-2021-32979. It is recommended to follow the mitigation steps provided by Aveva in their security bulletin.
More information about CVE-2021-32979 can be found in the security bulletin provided by Aveva: [link](https://www.aveva.com/content/dam/aveva/documents/support/cyber-security-updates/SecurityBulletin_AVEVA-2021-003.pdf).