CVE-2021-45773: Null Pointer Dereference
Published Jan 14, 2022
·Updated
A NULL pointer dereference in CS104IPAddresssetFromString at src/iec60870/cs104/cs104slave.c of lib60870 commit 0d5e76e can lead to a segmentation fault or application crash.
Affected Software
1 affected component
mz-automation Lib60870<2.3.1
Remediation
Patch Available
Event History
Jan 14, 2022
CVE Published
via MITRE·07:11 PM
Data Sourced
via MITRE·07:11 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-45773?
CVE-2021-45773 has a vulnerability severity rating that can lead to application crashes due to a NULL pointer dereference.
2
How do I fix CVE-2021-45773?
To mitigate CVE-2021-45773, upgrade to lib60870 version 2.3.1 or later.
3
What impact does CVE-2021-45773 have on my system?
CVE-2021-45773 can cause segmentation faults or application crashes in systems using the affected versions of lib60870.
4
Is CVE-2021-45773 exploitable remotely?
CVE-2021-45773 is potentially exploitable remotely if the vulnerable application is accessible across a network.
5
Which version of lib60870 is affected by CVE-2021-45773?
CVE-2021-45773 affects lib60870 versions prior to 2.3.1.