A specific malformed fragmented packet type (fragmented packets may be generated automatically by devices that send large amounts of data) can cause a major nonrecoverable fault (MNRF) Rockwell Automation's ControlLogix 5580, Guard Logix 5580, CompactLogix 5380, and 1756-EN4TR. If exploited, the affected product will become unavailable and require a manual restart to recover it. Additionally, an MNRF could result in a loss of view and/or control of connected devices.
Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-32079 | A specific malformed fragmented packet type (fragmented packets may be generated automatically by devices that send large amounts of data) can cause a major nonrecoverable fault (MNRF) Rockwell Automation's ControlLogix 5580, Guard Logix 5580, CompactLogix 5380, and 1756-EN4TR. If exploited, the affected product will become unavailable and require a manual restart to recover it. Additionally, an MNRF could result in a loss of view and/or control of connected devices. |
Solution
Affected Product First Known in Firmware Revision Corrected in Firmware Revision ControlLogix® 5580 V35.011 V35.013, V36.011 GuardLogix 5580 V35.011 V35.013, V36.011 CompactLogix 5380 V35.011 V35.013, V36.011 1756-EN4TR V5.001 V6.001 Users using the affected software and who are not able to upgrade to one of the corrected versions are encouraged to apply security best practices, where possible. * Security Best Practices https://rockwellautomation.custhelp.com/app/answers/answer_view/a_id/1085012/loc/en_US#__highlight
Workaround
No workaround given by the vendor.
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Rockwell
Published:
Updated: 2024-08-12T15:16:08.155Z
Reserved: 2024-04-08T21:46:38.867Z
Link: CVE-2024-3493
Updated: 2024-08-01T20:12:07.675Z
Status : Awaiting Analysis
Published: 2024-04-15T22:15:09.073
Modified: 2024-11-21T09:29:43.297
Link: CVE-2024-3493
No data.
OpenCVE Enrichment
No data.
EUVD