The CG Automation Software DNP3 driver, used in the ePAQ-9410 Substation
Gateway products, does not validate input correctly. An attacker could
cause the software to go into an infinite loop, causing the process to
crash. The system must be restarted manually to clear the condition.
Gateway products, does not validate input correctly. An attacker could
cause the software to go into an infinite loop, causing the process to
crash. The system must be restarted manually to clear the condition.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2014-0793 | The CG Automation Software DNP3 driver, used in the ePAQ-9410 Substation Gateway products, does not validate input correctly. An attacker could cause the software to go into an infinite loop, causing the process to crash. The system must be restarted manually to clear the condition. |
Fixes
Solution
CG Automation has fixed this vulnerability with updated software. Users may obtain the updated software by downloading from this web address: http://mail.cgautomationusa.com/login.aspx
Workaround
No workaround given by the vendor.
References
History
Fri, 19 Sep 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The DNP3 driver in CG Automation ePAQ-9410 Substation Gateway allows physically proximate attackers to cause a denial of service (infinite loop or process crash) via crafted input over a serial line. | The CG Automation Software DNP3 driver, used in the ePAQ-9410 Substation Gateway products, does not validate input correctly. An attacker could cause the software to go into an infinite loop, causing the process to crash. The system must be restarted manually to clear the condition. |
| Title | CG Automation ePAQ-9410 Substation Gateway Improper Input Validation | |
| References |
|
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-09-19T18:58:30.389Z
Reserved: 2014-01-02T00:00:00
Link: CVE-2014-0762
No data.
Status : Deferred
Published: 2014-08-28T01:55:03.043
Modified: 2025-09-19T19:15:37.340
Link: CVE-2014-0762
No data.
OpenCVE Enrichment
No data.
EUVD