Description
A vulnerability exists in the input validation of the GOOSE
messages where out of range values received and processed
by the IED caused a reboot of the device. In order for an
attacker to exploit the vulnerability, goose receiving blocks need
to be configured.
Published: 2023-12-01
Score: 6.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-54373 A vulnerability exists in the input validation of the GOOSE messages where out of range values received and processed by the IED caused a reboot of the device. In order for an attacker to exploit the vulnerability, goose receiving blocks need to be configured.
History

Mon, 23 Sep 2024 13:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-20

Mon, 23 Sep 2024 12:30:00 +0000

Type Values Removed Values Added
Description A vulnerability exists in the input validation of the GOOSE messages where out of range values received and processed by the IED caused a reboot of the device. In order for an attacker to exploit the vulnerability, goose receiving blocks need to be configured.  A vulnerability exists in the input validation of the GOOSE messages where out of range values received and processed by the IED caused a reboot of the device. In order for an attacker to exploit the vulnerability, goose receiving blocks need to be configured.

Subscriptions

Hitachienergy Relion 650 Relion 650 Firmware Relion 670 Relion 670 Firmware Relion Sam600-io Relion Sam600-io Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: Hitachi Energy

Published:

Updated: 2024-09-23T12:21:46.914Z

Reserved: 2023-08-24T12:58:41.362Z

Link: CVE-2023-4518

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-12-01T15:15:07.860

Modified: 2024-11-21T08:35:20.213

Link: CVE-2023-4518

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses