CVE-2025-9464: Rockwell Automation ArmorStart® LT - Multiple Denial-of-Service Vulnerabilities
A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. This vulnerability is triggered during fuzzing of multiple CIP classes, which causes the CIP port to become unresponsive.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-9464?
CVE-2025-9464 has been classified as a high-severity vulnerability due to its potential to cause denial-of-service conditions.
How do I fix CVE-2025-9464?
To fix CVE-2025-9464, updating to the latest firmware version provided by Rockwell Automation is recommended.
What software is affected by CVE-2025-9464?
CVE-2025-9464 affects the Rockwell Automation ArmorStart® LT product.
How does CVE-2025-9464 trigger a denial-of-service?
CVE-2025-9464 triggers a denial-of-service condition during fuzzing of multiple CIP classes, making the CIP port unresponsive.
Are there any workarounds for CVE-2025-9464?
Currently, the primary mitigation for CVE-2025-9464 is to apply the firmware updates from Rockwell Automation.