An out-of-bounds write vulnerability exists in the GetAttributeList attribute_count_request functionality of EIP Stack Group OpENer development commit 58ee13c. A specially crafted EtherNet/IP request can lead to an out-of-bounds write, potentially causing the server to crash or allow for remote code execution. An attacker can send a series of EtherNet/IP requests to trigger this vulnerability.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: talos
Published: 2023-03-16T20:14:14.331Z
Updated: 2024-08-03T13:32:59.650Z
Reserved: 2022-10-21T18:22:32.246Z
Link: CVE-2022-43604
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2023-03-16T21:15:11.123
Modified: 2023-03-23T18:55:03.037
Link: CVE-2022-43604
Redhat
No data.