Security Advisory

CVE-2023-7242

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-03-01 20:17:51
Last updated 2024-08-02 08:57:35
Assigner icscert
State PUBLISHED

Description

Industrial Control Systems Network Protocol Parsers (ICSNPP) - Ethercat Zeek Plugin versions d78dda6 and prior are vulnerable to out-of-bounds read during the process of analyzing a specific Ethercat packet. This could allow an attacker to crash the Zeek process and leak some information in memory.