Impact
The vulnerability in Hitachi Energy RTU500 firmware is a null pointer dereference triggered when the enhanced message queue is overloaded by rapid GI requests. This flaw leads to a fatal write error in the BCI_IEC104 component, causing the IEC 60870‑5‑104 connection to drop, requiring a restart, and ultimately denying bidirectional communication over the protocol.
Affected Systems
Affected devices are Hitachi Energy RTU500 series CMU firmware. No specific firmware version ranges are listed; any system running current RTU500 firmware is potentially impacted.
Risk and Exploitability
With a CVSS score of 5.9 the vulnerability rates as medium severity. The EPSS score is not available, and it is not listed in the CISA KEV catalogue, indicating no known large‑scale exploitation. The likely attack vector is network‑based, where an adversary could generate a sustained stream of IEC 60870‑5‑104 GI requests to trigger the crash. Because the flaw has no privilege requirements, any remote host with network access to the target can exploit it, resulting in service disruption.
OpenCVE Enrichment