Description
Improper Resource Locking vulnerability in Mitsubishi Electric MELSEC iQ-R Series R12CCPU-V firmware versions "16" and prior, Mitsubishi Electric MELSEC-Q Series Q03UDECPU the first 5 digits of serial No. "24061" and prior, Mitsubishi Electric MELSEC-Q Series Q04/06/10/13/20/26/50/100UDEHCPU the first 5 digits of serial No. "24061" and prior, Mitsubishi Electric MELSEC-Q Series Q03/04/06/13/26UDVCPU the first 5 digits of serial number "24051" and prior, Mitsubishi Electric MELSEC-Q Series Q04/06/13/26UDPVCPU the first 5 digits of serial number "24051" and prior, Mitsubishi Electric MELSEC-Q Series Q12DCCPU-V all versions, Mitsubishi Electric MELSEC-Q Series Q24DHCCPU-V(G) all versions, Mitsubishi Electric MELSEC-Q Series Q24/26DHCCPU-LS all versions, Mitsubishi Electric MELSEC-L series L02/06/26CPU(-P) the first 5 digits of serial number "24051" and prior, Mitsubishi Electric MELSEC-L series L26CPU-(P)BT the first 5 digits of serial number "24051" and prior and Mitsubishi Electric MELIPC Series MI5122-VW firmware versions "05" and prior allows a remote unauthenticated attacker to cause a denial of service (DoS) condition in Ethernet communications by sending specially crafted packets. A system reset of the products is required for recovery.
Published: 2022-06-15
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2022-29701 Improper Resource Locking vulnerability in Mitsubishi Electric MELSEC iQ-R Series R12CCPU-V firmware versions "16" and prior, Mitsubishi Electric MELSEC-Q Series Q03UDECPU the first 5 digits of serial No. "24061" and prior, Mitsubishi Electric MELSEC-Q Series Q04/06/10/13/20/26/50/100UDEHCPU the first 5 digits of serial No. "24061" and prior, Mitsubishi Electric MELSEC-Q Series Q03/04/06/13/26UDVCPU the first 5 digits of serial number "24051" and prior, Mitsubishi Electric MELSEC-Q Series Q04/06/13/26UDPVCPU the first 5 digits of serial number "24051" and prior, Mitsubishi Electric MELSEC-Q Series Q12DCCPU-V all versions, Mitsubishi Electric MELSEC-Q Series Q24DHCCPU-V(G) all versions, Mitsubishi Electric MELSEC-Q Series Q24/26DHCCPU-LS all versions, Mitsubishi Electric MELSEC-L series L02/06/26CPU(-P) the first 5 digits of serial number "24051" and prior, Mitsubishi Electric MELSEC-L series L26CPU-(P)BT the first 5 digits of serial number "24051" and prior and Mitsubishi Electric MELIPC Series MI5122-VW firmware versions "05" and prior allows a remote unauthenticated attacker to cause a denial of service (DoS) condition in Ethernet communications by sending specially crafted packets. A system reset of the products is required for recovery.
History

No history.

Subscriptions

Mitsubishielectric L02cpu L02cpu-p L02cpu-p Firmware L02cpu Firmware L02scpu L02scpu-p L02scpu-p Firmware L02scpu Firmware L06cpu L06cpu-p L06cpu-p Firmware L06cpu Firmware L26cpu L26cpu-\(p\)bt L26cpu-\(p\)bt Firmware L26cpu-bt L26cpu-bt-cm L26cpu-bt-cm Firmware L26cpu-bt Firmware L26cpu-p L26cpu-p Firmware L26cpu-pbt L26cpu-pbt Firmware L26cpu Firmware Q03udecpu Q03udecpu Firmware Q04udehcpu Q04udehcpu Firmware Q04udpvcpu Q04udpvcpu Firmware Q04udvcpu Q04udvcpu Firmware Q06ccpu-v Q06ccpu-v Firmware Q06phcpu Q06phcpu Firmware Q06udehcpu Q06udehcpu Firmware Q06udpvcpu Q06udpvcpu Firmware Q06udvcpu Q06udvcpu Firmware Q100udehcpu Q100udehcpu Firmware Q10udehcpu Q10udehcpu Firmware Q13udehcpu Q13udehcpu Firmware Q13udpvcpu Q13udpvcpu Firmware Q13udvcpu Q13udvcpu Firmware Q20udehcpu Q20udehcpu Firmware Q26dhccpu-ls Q26dhccpu-ls Firmware Q26udehcpu Q26udehcpu Firmware Q26udpvcpu Q26udpvcpu Firmware Q26udvcpu Q26udvcpu Firmware Q50udehcpu Q50udehcpu Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: Mitsubishi

Published:

Updated: 2024-08-03T04:29:01.628Z

Reserved: 2022-02-10T00:00:00.000Z

Link: CVE-2022-24946

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-06-15T21:15:09.333

Modified: 2024-11-21T06:51:26.130

Link: CVE-2022-24946

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses