In affected versions, a heap-based buffer over-read condition occurs when the message field indicates more data than is present in the message field
in Rockwell Automation's ThinManager ThinServer. An unauthenticated remote attacker can exploit this vulnerability to crash ThinServer.exe due to a read access violation.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
Customers are directed to update to versions of the product that correct the vulnerability as listed in the reference article.
Workaround
No workaround given by the vendor.
References
History
Mon, 21 Oct 2024 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: Rockwell
Published:
Updated: 2024-10-21T16:02:48.552Z
Reserved: 2023-03-06T18:21:21.067Z
Link: CVE-2023-27857

Updated: 2024-08-02T12:23:29.231Z

Status : Modified
Published: 2023-03-22T02:15:48.953
Modified: 2024-11-21T07:53:35.273
Link: CVE-2023-27857

No data.

No data.