Impact
Improper validation of input length during CIP message processing can cause a major nonrecoverable fault that requires a power cycle to recover, effectively rendering the system unavailable. The weakness is a classic buffer over-read (CWE-119) that can be triggered by malicious or malformed messages sent to the device.
Affected Systems
Rockwell Automation CompactLogix 5380 and ControlLogix 5580 running firmware versions v33, v34.011 through v34.014, v35.011 through v35.013, and v36.011 through v36.012 are vulnerable.
Risk and Exploitability
The CVSS score of 8.7 indicates a high severity. EPSS data is unavailable, but the absence of a KEV listing suggests it has not yet been widely exploited. An attacker can craft CIP messages of arbitrary length to trigger the fault; the attack vector is inferred to be remote over the CIP network interface, provided the device is exposed to a network that an attacker can reach.
OpenCVE Enrichment