Out-of-bounds Read vulnerability in Mitsubishi Electric GX Works2 versions 1.606G and prior, Mitsubishi Electric MELSOFT Navigator versions 2.84N and prior and Mitsubishi Electric EZSocket versions 5.4 and prior allows an attacker to cause a DoS condition in the software by getting a user to open malicious project file specially crafted by an attacker.
References
Link | Resource |
---|---|
https://jvn.jp/vu/JVNVU93817405/index.html | Patch Third Party Advisory |
https://us-cert.cisa.gov/ics/advisories/icsa-21-350-05 | Third Party Advisory US Government Resource |
https://www.mitsubishielectric.com/en/psirt/vulnerability/pdf/2021-021_en.pdf | Patch Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: Mitsubishi
Published: 2021-12-17T16:10:27
Updated: 2022-07-29T15:13:57
Reserved: 2020-12-17T00:00:00
Link: CVE-2021-20606
JSON object: View
NVD Information
Status : Analyzed
Published: 2021-12-17T17:15:11.833
Modified: 2023-02-02T19:55:06.383
Link: CVE-2021-20606
JSON object: View
Redhat Information
No data.
CWE