CVE-2022-30791: CODESYS V3: CmpBlkDrvTcp allows unauthenticated attackers to block all its available TCP connections
In CmpBlkDrvTcp of CODESYS V3 in multiple versions an uncontrolled ressource consumption allows an unauthorized attacker to block new TCP connections. Existing connections are not affected.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2022-30791.
What is the severity of CVE-2022-30791?
The severity of CVE-2022-30791 is high (7.5).
Which software versions are affected by CVE-2022-30791?
Multiple versions of CODESYS V3 are affected, including Codesys Control For Beaglebone, Codesys Control For Empc-a/imx6, Codesys Control For Iot2000 Sl, Codesys Control For Linux Sl, Codesys Control For Pfc100 Sl, Codesys Control For Pfc200 Sl, Codesys Control For Plcnext, Codesys Control For Raspberry Pi Sl, and Codesys Control For Wago Touch Panels 600.
What is the impact of CVE-2022-30791?
An unauthorized attacker can block new TCP connections, but existing connections are not affected.
Where can I find more information about CVE-2022-30791?
You can find more information about CVE-2022-30791 at this link: [insert link]