CVE-2023-7243: Ethercat Zeek Plugin Out-of-bounds Write
Industrial Control Systems Network Protocol Parsers (ICSNPP) - Ethercat Zeek Plugin versions d78dda6 and prior are vulnerable to out-of-bounds write while analyzing specific Ethercat datagrams. This could allow an attacker to cause arbitrary code execution.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-7243?
CVE-2023-7243 is considered a critical vulnerability due to its potential for arbitrary code execution.
How do I fix CVE-2023-7243?
To fix CVE-2023-7243, update to a version of the ICSNPP - Ethercat Zeek Plugin that is newer than d78dda6.
What types of attacks can exploit CVE-2023-7243?
CVE-2023-7243 can be exploited to perform remote code execution attacks through specially crafted Ethercat datagrams.
What systems are affected by CVE-2023-7243?
CVE-2023-7243 affects systems utilizing the ICSNPP - Ethercat Zeek Plugin version d78dda6 and earlier.
Who reported CVE-2023-7243?
CVE-2023-7243 was reported by CISA in an advisory regarding vulnerabilities in industrial control systems.