CVE-2024-1917: Integer Overflow
Published Mar 15, 2024
·Updated
Integer Overflow or Wraparound vulnerability in Mitsubishi Electric Corporation MELSEC-Q Series and MELSEC-L Series CPU modules allows a remote unauthenticated attacker to execute malicious code on a target product by sending a specially crafted packet.
Affected Software
2 affected components
Mitsubishi Electric MELSEC-Q Series
Mitsubishi Electric MELSEC-L Series
Event History
Mar 15, 2024
CVE Published
via MITRE·12:02 AM
Data Sourced
via MITRE·12:02 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-1917?
CVE-2024-1917 is considered a high severity vulnerability due to its potential for remote code execution.
2
What products are affected by CVE-2024-1917?
CVE-2024-1917 affects Mitsubishi Electric MELSEC-Q Series and MELSEC-L Series CPU modules.
3
How can I fix CVE-2024-1917?
To fix CVE-2024-1917, it is recommended to apply the latest firmware updates provided by Mitsubishi Electric.
4
What type of vulnerability is CVE-2024-1917?
CVE-2024-1917 is classified as an Integer Overflow or Wraparound vulnerability.
5
Can CVE-2024-1917 be exploited remotely?
Yes, CVE-2024-1917 can be exploited by remote unauthenticated attackers through specially crafted packets.