CVE-2022-25622
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD
Description
The PROFINET (PNIO) stack, when integrated with the Interniche IP stack, improperly handles internal resources for TCP segments where the minimum TCP-Header length is less than defined.
This could allow an attacker to create a denial of service condition for TCP services on affected devices by sending specially crafted TCP segments.
Affected (12)
Products: Siemens: Simatic Cfu Diq Firmware, Simatic Cfu Pa Firmware, Simatic S7 300 Cpu Firmware, Simatic S7 400h V6 Firmware, Simatic S7 400 Pn/dp V7 Firmware, Simatic S7 410 V8 Firmware, Simatic S7 410 V10 Firmware, Simatic S7 1500 Cpu Firmware, Simatic Tdc Cp51m1 Firmware, Simatic Tdc Cpu555 Firmware, Simatic Winac Rtx Firmware, Simit Simulation Platform
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Siemens Simatic Cfu Diq | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Siemens Simatic Cfu Pa | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Siemens Simatic S7 300 Cpu | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Siemens Simatic S7 400h V6 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Siemens Simatic S7 400 Pn/dp V7 | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Siemens Simatic S7 410 V8 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Siemens Simatic S7 410 V10 | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.0.0 |
| Running on/with | Platform Versions |
|---|---|
Siemens Simatic S7 1500 Cpu | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Siemens Simatic Tdc Cp51m1 | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Siemens Simatic Tdc Cpu555 | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Siemens Simatic Winac Rtx | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
References (4)
Source: productcert@siemens.com
Source: productcert@siemens.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.