Improper Input Validation vulnerability in the APDU parser in the Bidirectional Communication Interface (BCI) IEC 60870-5-104 function of Hitachi Energy RTU500 series allows an attacker to cause the receiving RTU500 CMU of which the BCI is enabled to reboot when receiving a specially crafted message. By default, BCI IEC 60870-5-104 function is disabled (not configured). This issue affects: Hitachi Energy RTU500 series CMU Firmware version 12.0.* (all versions); CMU Firmware version 12.2.* (all versions); CMU Firmware version 12.4.* (all versions).
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Hitachi Energy

Published: 2021-11-26T16:37:27.683297Z

Updated: 2024-09-16T21:02:16.277Z

Reserved: 2021-06-28T00:00:00

Link: CVE-2021-35533

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-11-26T17:15:07.743

Modified: 2023-05-16T21:04:23.433

Link: CVE-2021-35533

cve-icon Redhat

No data.