COPA-DATA zenon DNP3 NG driver (DNP3 master) 7.10 and 7.11 through 7.11 SP0 build 10238 and zenon DNP3 Process Gateway (DNP3 outstation) 7.11 SP0 build 10238 and earlier allow physically proximate attackers to cause a denial of service (infinite loop and process crash) via crafted input over a serial line.
Fixes

Solution

Build 11206 for Version zenon 7.11 is available that contains updated versions of the affected products that resolve the discovered vulnerabilities. COPA-DATA recommends upgrading or updating the affected products to this version. Please see Knowledge Base articles 179444 and 178001 located here:  http://www.copadata.com/en/support.html System integrators and asset owners should contact their local COPA-DATA representative for further information on how to obtain this update.


Workaround

No workaround given by the vendor.

History

Thu, 02 Oct 2025 22:30:00 +0000

Type Values Removed Values Added
Title COPA-DATA zenon DNP3 Improper Input Validation
References

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2025-10-02T22:27:22.187Z

Reserved: 2014-03-13T00:00:00

Link: CVE-2014-2346

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2014-06-05T17:55:06.027

Modified: 2025-10-02T23:15:30.497

Link: CVE-2014-2346

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.