On Phoenix Contact mGuard Devices versions before 8.8.3 LAN ports get functional after reboot even if they are disabled in the device configuration. For mGuard devices with integrated switch on the LAN side, single switch ports can be disabled by device configuration. After a reboot these ports get functional independent from their configuration setting: Missing Initialization of Resource
Advisories
Source ID Title
EUVD EUVD EUVD-2020-4825 On Phoenix Contact mGuard Devices versions before 8.8.3 LAN ports get functional after reboot even if they are disabled in the device configuration. For mGuard devices with integrated switch on the LAN side, single switch ports can be disabled by device configuration. After a reboot these ports get functional independent from their configuration setting: Missing Initialization of Resource
Fixes

Solution

PHOENIX CONTACT recommends all mGuard users to upgrade to the firmware version 8.8.3.


Workaround

Instead of deactivating by configuration, network cables should be detached from affected switch ports.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: CERTVDE

Published:

Updated: 2024-09-16T19:04:46.625Z

Reserved: 2020-04-30T00:00:00

Link: CVE-2020-12523

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-12-17T23:15:13.263

Modified: 2024-11-21T04:59:51.767

Link: CVE-2020-12523

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.