CVE-2022-43605: Critical severity opener project opener vulnerability
An out-of-bounds write vulnerability exists in the SetAttributeList attributecountrequest functionality of EIP Stack Group OpENer development commit 58ee13c. A specially crafted EtherNet/IP request can lead to an out of bounds write, potentially causing the server to crash or allow for remote code execution. An attacker can send a series of EtherNet/IP requests to trigger this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-43605?
CVE-2022-43605 is an out-of-bounds write vulnerability in the SetAttributeList attribute_count_request functionality of EIP Stack Group OpENer development.
How severe is CVE-2022-43605?
CVE-2022-43605 has a severity rating of 9.8, which is classified as critical.
Which software is affected by CVE-2022-43605?
Opener Project Opener versions before October 18, 2022 are affected by CVE-2022-43605.
What can happen if CVE-2022-43605 is exploited?
Exploiting CVE-2022-43605 can lead to an out-of-bounds write, potentially causing the server to crash or allowing for remote code execution.
How can I fix CVE-2022-43605?
To fix CVE-2022-43605, it is recommended to update Opener Project Opener to a version released on or after October 18, 2022.