COPA-DATA zenon DNP3 NG driver (DNP3 master) 7.10 and 7.11 through 7.11 SP0 build 10238 and zenon DNP3 Process Gateway (DNP3 outstation) 7.11 SP0 build 10238 and earlier allow remote attackers to cause a denial of service (infinite loop and process crash) by sending a crafted DNP3 packet over TCP.
Fixes

Solution

Build 11206 for Version zenon 7.11 is available that contains updated versions of the affected products that resolve the discovered vulnerabilities. COPA-DATA recommends upgrading or updating the affected products to this version. Please see Knowledge Base articles 179444 and 178001 located here:  http://www.copadata.com/en/support.html System integrators and asset owners should contact their local COPA-DATA representative for further information on how to obtain this update.


Workaround

No workaround given by the vendor.

History

Thu, 02 Oct 2025 22:30:00 +0000

Type Values Removed Values Added
Title COPA-DATA zenon DNP3 Improper Input Validation
References

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2025-10-02T22:28:23.701Z

Reserved: 2014-03-13T00:00:00

Link: CVE-2014-2345

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2014-06-05T17:55:05.950

Modified: 2025-10-02T23:15:30.320

Link: CVE-2014-2345

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.