CVE-2024-25137: AutomationDirect C-MORE EA9 HMI Stack-based Buffer Overflow
In AutomationDirect C-MORE EA9 HMI there is a program that copies a buffer of a size controlled by the user into a limited sized buffer on the stack which may lead to a stack overflow. The result of this stack-based buffer overflow can lead to denial-of-service conditions.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-25137?
CVE-2024-25137 has a severity rating that indicates it could lead to denial-of-service conditions due to a stack-based buffer overflow.
How do I fix CVE-2024-25137?
To fix CVE-2024-25137, ensure that you update to the latest version of AutomationDirect C-MORE EA9 HMI that contains patches for this vulnerability.
What are the potential impacts of CVE-2024-25137?
The potential impacts of CVE-2024-25137 include service disruptions and crashes due to the stack overflow vulnerability.
Who is affected by CVE-2024-25137?
Users of the AutomationDirect C-MORE EA9 HMI are affected by CVE-2024-25137 if they utilize the vulnerable buffer copying feature.
Is there a workaround for CVE-2024-25137?
At this time, no specific workaround for CVE-2024-25137 has been mentioned, so users should focus on applying available updates.