Fuji Electric Alpha5 SMART

is vulnerable to a stack-based buffer overflow, which may allow an attacker to execute arbitrary code.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-35165 Fuji Electric Alpha5 SMART is vulnerable to a stack-based buffer overflow, which may allow an attacker to execute arbitrary code.
Fixes

Solution

Fuji Electric has indicated that the vulnerabilities will not be fixed in Alpha5 SMART. Fuji Electric recommends users upgrade their systems to Alpha7 https://www.fujielectric.com/products/drives_inverters/servo/product_series/alpha7_overview.html . For assistance, reach out directly to Fuji Electric's support team https://www.fujielectric.com/contact/ .


Workaround

No workaround given by the vendor.

History

Wed, 12 Feb 2025 21:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 17 Jan 2025 00:45:00 +0000

Type Values Removed Values Added
Description Fuji Electric Alpha5 SMART is vulnerable to a stack-based buffer overflow, which may allow an attacker to execute arbitrary code.
Title Fuji Electric Alpha5 SMART Stack-Based Buffer Overflow
Weaknesses CWE-121
References
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}

cvssV4_0

{'score': 8.5, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2025-02-12T20:31:24.377Z

Reserved: 2024-05-20T14:11:06.262Z

Link: CVE-2024-34579

cve-icon Vulnrichment

Updated: 2025-02-12T20:27:13.116Z

cve-icon NVD

Status : Received

Published: 2025-01-17T01:15:22.377

Modified: 2025-01-17T01:15:22.377

Link: CVE-2024-34579

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.