CVE-2022-43604: Critical severity opener project opener vulnerability
An out-of-bounds write vulnerability exists in the GetAttributeList attributecountrequest functionality of EIP Stack Group OpENer development commit 58ee13c. A specially crafted EtherNet/IP request can lead to an out-of-bounds write, potentially causing the server to crash or allow for remote code execution. An attacker can send a series of EtherNet/IP requests to trigger this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-43604?
The severity of CVE-2022-43604 is critical.
How can the out-of-bounds write vulnerability in CVE-2022-43604 be exploited?
The out-of-bounds write vulnerability in CVE-2022-43604 can be exploited by sending a specially crafted EtherNet/IP request.
What can happen if CVE-2022-43604 is successfully exploited?
If CVE-2022-43604 is successfully exploited, it can lead to server crashes or remote code execution.
Is there a fix available for CVE-2022-43604?
Yes, a fix is available for CVE-2022-43604. It is recommended to update to the latest version of OpENer.
Where can I find more information about CVE-2022-43604?
More information about CVE-2022-43604 can be found at the following link: [Talos Intelligence - CVE-2022-43604](https://talosintelligence.com/vulnerability_reports/TALOS-2022-1661)