In Delta Industrial Automation DOPSoft, Version 4.00.06.15 and prior, processing a specially crafted project file may trigger a use-after-free vulnerability, which may allow information disclosure, remote code execution, or crash of the application.
References
Link Resource
https://www.us-cert.gov/ics/advisories/icsa-19-225-01 Mitigation Third Party Advisory US Government Resource
https://www.zerodayinitiative.com/advisories/ZDI-19-717/ Third Party Advisory VDB Entry
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: icscert

Published: 2019-08-15T18:42:51

Updated: 2019-08-16T09:06:11

Reserved: 2019-07-11T00:00:00


Link: CVE-2019-13514

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-08-15T19:15:11.153

Modified: 2023-03-03T19:25:54.057


Link: CVE-2019-13514

JSON object: View

cve-icon Redhat Information

No data.

CWE