CVE-2024-39590

CVSS V2 None CVSS V3 None
Description
Multiple invalid pointer dereference vulnerabilities exist in the OpenPLC Runtime EtherNet/IP parser functionality of OpenPLC_v3 16bf8bac1a36d95b73e7b8722d0edb8b9c5bb56a. A specially crafted EtherNet/IP request can lead to denial of service. An attacker can send a series of EtherNet/IP requests to trigger these vulnerabilities.This instance of the vulnerability occurs within the `Protected_Logical_Write_Reply` function
Overview
  • CVE ID
  • CVE-2024-39590
  • Assigner
  • talos
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-09-18T14:35:54.423Z
  • Last Modified Date
  • 2024-09-18T17:24:34.213Z
History
Created Old Value New Value Data Type Notes
2024-10-06 04:31:28 Added to TrackCVE