CVE-2024-34057: Buffer Overflow
Published Sep 18, 2024
·Updated
Triangle Microworks TMW IEC 61850 Client source code libraries before 12.2.0 lack a buffer size check when processing received messages. The resulting buffer overflow can cause a crash, resulting in a denial of service.
Affected Software
9 affected components
Trianglemicroworks Iec 61850 Source Code Library<12.2.0
All of the following
Siemens Sicam A8000 Firmware<05.30
Siemens Sicam A8000
All of the following
Siemens Sicam Scc Firmware<10.0
Siemens SICAM SCC
All of the following
Siemens Sicam Egs Firmware<05.30
Siemens Sicam Egs
Siemens Sicam S8000<05.30
Siemens Sitipe At
Event History
Sep 18, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-34057?
CVE-2024-34057 has a high severity due to the potential for denial of service caused by a buffer overflow.
2
How do I fix CVE-2024-34057?
To fix CVE-2024-34057, update Triangle Microworks IEC 61850 libraries to version 12.2.0 or later.
3
What types of devices are affected by CVE-2024-34057?
CVE-2024-34057 affects Triangle Microworks IEC 61850 source code libraries and various Siemens firmware versions.
4
Is CVE-2024-34057 actively being exploited in the wild?
Currently, there are no public reports indicating active exploitation of CVE-2024-34057.
5
What are the potential impacts of CVE-2024-34057?
The potential impacts of CVE-2024-34057 include application crashes and denial of service.