In affected versions, a heap-based buffer over-read condition occurs when the message field indicates more data than is present in the message field
in Rockwell Automation's ThinManager ThinServer. An unauthenticated remote attacker can exploit this vulnerability to crash ThinServer.exe due to a read access violation.
Metrics
Affected Vendors & Products
No advisories yet.
Solution
Customers are directed to update to versions of the product that correct the vulnerability as listed in the reference article.
Workaround
No workaround given by the vendor.
Mon, 21 Oct 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Rockwell
Published:
Updated: 2024-10-21T16:02:48.552Z
Reserved: 2023-03-06T18:21:21.067Z
Link: CVE-2023-27857
Updated: 2024-08-02T12:23:29.231Z
Status : Modified
Published: 2023-03-22T02:15:48.953
Modified: 2024-11-21T07:53:35.273
Link: CVE-2023-27857
No data.
OpenCVE Enrichment
No data.