Description
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series CPU modules and MELSEC iQ-R Series CPU modules allows a remote unauthenticated attacker to cause a denial of service (DoS) condition or execute malicious code on a target product by sending specially crafted packets. A system reset of the product is required for recovery from a denial of service (DoS) condition and malicious code execution.
Published: 2023-05-24
Score: 10 Critical
EPSS: 3.4% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-23677 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series CPU modules and MELSEC iQ-R Series CPU modules allows a remote unauthenticated attacker to cause a denial of service (DoS) condition or execute malicious code on a target product by sending specially crafted packets. A system reset of the product is required for recovery from a denial of service (DoS) condition and malicious code execution.
History

Wed, 05 Mar 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 22 Nov 2024 12:00:00 +0000


Subscriptions

Mitsubishielectric Melsec Iq-fx5u-32mr\/ds Melsec Iq-fx5u-32mr\/ds Firmware Melsec Iq-fx5u-32mr\/dss Melsec Iq-fx5u-32mr\/dss Firmware Melsec Iq-fx5u-32mr\/es Melsec Iq-fx5u-32mr\/es Firmware Melsec Iq-fx5u-32mr\/ess Melsec Iq-fx5u-32mr\/ess Firmware Melsec Iq-fx5u-32mt\/ds Melsec Iq-fx5u-32mt\/ds Firmware Melsec Iq-fx5u-32mt\/dss Melsec Iq-fx5u-32mt\/dss Firmware Melsec Iq-fx5u-32mt\/es Melsec Iq-fx5u-32mt\/es Firmware Melsec Iq-fx5u-32mt\/ess Melsec Iq-fx5u-32mt\/ess Firmware Melsec Iq-fx5u-64mr\/ds Melsec Iq-fx5u-64mr\/ds Firmware Melsec Iq-fx5u-64mr\/dss Melsec Iq-fx5u-64mr\/dss Firmware Melsec Iq-fx5u-64mr\/es Melsec Iq-fx5u-64mr\/es Firmware Melsec Iq-fx5u-64mr\/ess Melsec Iq-fx5u-64mr\/ess Firmware Melsec Iq-fx5u-64mt\/ds Melsec Iq-fx5u-64mt\/ds Firmware Melsec Iq-fx5u-64mt\/dss Melsec Iq-fx5u-64mt\/dss Firmware Melsec Iq-fx5u-64mt\/es Melsec Iq-fx5u-64mt\/es Firmware Melsec Iq-fx5u-64mt\/ess Melsec Iq-fx5u-64mt\/ess Firmware Melsec Iq-fx5u-80mr\/ds Melsec Iq-fx5u-80mr\/ds Firmware Melsec Iq-fx5u-80mr\/dss Melsec Iq-fx5u-80mr\/dss Firmware Melsec Iq-fx5u-80mr\/es Melsec Iq-fx5u-80mr\/es Firmware Melsec Iq-fx5u-80mr\/ess Melsec Iq-fx5u-80mr\/ess Firmware Melsec Iq-fx5u-80mt\/ds Melsec Iq-fx5u-80mt\/ds Firmware Melsec Iq-fx5u-80mt\/dss Melsec Iq-fx5u-80mt\/dss Firmware Melsec Iq-fx5u-80mt\/es Melsec Iq-fx5u-80mt\/es Firmware Melsec Iq-fx5u-80mt\/ess Melsec Iq-fx5u-80mt\/ess Firmware Melsec Iq-fx5uc-32mr\/dds Melsec Iq-fx5uc-32mr\/dds Firmware Melsec Iq-fx5uc-32mr\/ds Melsec Iq-fx5uc-32mr\/ds-ts Melsec Iq-fx5uc-32mr\/ds-ts Firmware Melsec Iq-fx5uc-32mr\/ds Firmware Melsec Iq-fx5uc-32mt\/dds Melsec Iq-fx5uc-32mt\/dds Firmware Melsec Iq-fx5uc-32mt\/ds Melsec Iq-fx5uc-32mt\/ds-ts Melsec Iq-fx5uc-32mt\/ds-ts Firmware Melsec Iq-fx5uc-32mt\/ds Firmware Melsec Iq-fx5uc-32mt\/dss-ts Melsec Iq-fx5uc-32mt\/dss-ts Firmware Melsec Iq-fx5uc-64mr\/dds Melsec Iq-fx5uc-64mr\/dds Firmware Melsec Iq-fx5uc-64mr\/ds Melsec Iq-fx5uc-64mr\/ds Firmware Melsec Iq-fx5uc-64mt\/dds Melsec Iq-fx5uc-64mt\/dds Firmware Melsec Iq-fx5uc-64mt\/ds Melsec Iq-fx5uc-64mt\/ds Firmware Melsec Iq-fx5uc-96mr\/dds Melsec Iq-fx5uc-96mr\/dds Firmware Melsec Iq-fx5uc-96mr\/ds Melsec Iq-fx5uc-96mr\/ds Firmware Melsec Iq-fx5uc-96mt\/dds Melsec Iq-fx5uc-96mt\/dds Firmware Melsec Iq-fx5uc-96mt\/ds Melsec Iq-fx5uc-96mt\/ds Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: Mitsubishi

Published:

Updated: 2025-03-05T18:59:00.469Z

Reserved: 2023-03-16T02:10:25.722Z

Link: CVE-2023-1424

cve-icon Vulnrichment

Updated: 2024-08-02T05:49:11.688Z

cve-icon NVD

Status : Modified

Published: 2023-05-24T05:15:08.780

Modified: 2024-11-21T07:39:09.593

Link: CVE-2023-1424

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses