A vulnerability exists in the input validation of the GOOSE messages where out of range values received and processed by the IED caused a reboot of the device. In order for an attacker to exploit the vulnerability, goose receiving blocks need to be configured.
History

Mon, 23 Sep 2024 13:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-20

Mon, 23 Sep 2024 12:30:00 +0000

Type Values Removed Values Added
Description A vulnerability exists in the input validation of the GOOSE messages where out of range values received and processed by the IED caused a reboot of the device. In order for an attacker to exploit the vulnerability, goose receiving blocks need to be configured.  A vulnerability exists in the input validation of the GOOSE messages where out of range values received and processed by the IED caused a reboot of the device. In order for an attacker to exploit the vulnerability, goose receiving blocks need to be configured.

cve-icon MITRE

Status: PUBLISHED

Assigner: Hitachi Energy

Published: 2023-12-01T14:18:47.387Z

Updated: 2024-09-23T12:21:46.914Z

Reserved: 2023-08-24T12:58:41.362Z

Link: CVE-2023-4518

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-12-01T15:15:07.860

Modified: 2024-09-23T13:15:04.467

Link: CVE-2023-4518

cve-icon Redhat

No data.