CVE-2024-23814: Medium severity siemens scalance wab762-1 vulnerability
The integrated ICMP service of the network stack of affected devices can be forced to exhaust its available memory resources when receiving specially crafted messages targeting IP fragment re-assembly. This could allow an unauthenticated remote attacker to cause a temporary denial of service condition of the ICMP service, other communication services are not affected. Affected devices will resume normal operation after the attack terminates.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-23814?
CVE-2024-23814 has a moderate severity rating due to potential unauthorized access risks.
How do I fix CVE-2024-23814?
To fix CVE-2024-23814, upgrade to versions 3.0.0 or later of the affected Siemens SCALANCE models.
Which devices are affected by CVE-2024-23814?
CVE-2024-23814 affects Siemens SCALANCE WAB762-1, WAM763-1, and WAM766-1 models with versions earlier than 3.0.0.
What types of vulnerabilities does CVE-2024-23814 address?
CVE-2024-23814 addresses vulnerabilities related to unauthorized access that can compromise network security.
Is there a known exploit for CVE-2024-23814?
As of now, there are no publicly available exploits disclosed for CVE-2024-23814.