CVE-2023-7244

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
01/03/2024
Last modified:
07/03/2024

Description

Industrial Control Systems Network Protocol Parsers (ICSNPP) - Ethercat <br /> Zeek Plugin versions d78dda6 and prior are vulnerable to out-of-bounds <br /> write in their primary analyses function for Ethercat communication <br /> packets. This could allow an attacker to cause arbitrary code execution.<br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cisa:icsnpp-ethercat:*:*:*:*:*:zeek:*:* d78dda6 (including)


References to Advisories, Solutions, and Tools