CVE-2013-2811
22.11.2013, 01:55
The (1) Catapult DNP3 I/O driver before 7.2.0.60 and the (2) GE Intelligent Platforms Proficy DNP3 I/O driver before 7.20k, as used in DNPDrv.exe (aka the DNP master station server) in GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY and iFIX, allow remote attackers to cause a denial of service (infinite loop) via a crafted DNP3 TCP packet.Enginsight
| Vendor | Product | Version |
|---|---|---|
| catapultsoftware | catapult_dnp3_i\/o_driver | 𝑥 ≤ 7.20.56 |
| ge | intelligent_platforms_proficy_dnp3_i\/o_driver | 𝑥 ≤ 7.20 |
| ge | intelligent_platforms_proficy_dnp3_i\/o_driver | 7.20 |
| ge | intelligent_platforms_proficy_dnp3_i\/o_driver | 7.20:a |
| ge | intelligent_platforms_proficy_dnp3_i\/o_driver | 7.20:b |
| ge | intelligent_platforms_proficy_dnp3_i\/o_driver | 7.20:c |
| ge | intelligent_platforms_proficy_dnp3_i\/o_driver | 7.20:d |
| ge | intelligent_platforms_proficy_dnp3_i\/o_driver | 7.20:e |
| ge | intelligent_platforms_proficy_dnp3_i\/o_driver | 7.20:f |
| ge | intelligent_platforms_proficy_dnp3_i\/o_driver | 7.20:g |
| ge | intelligent_platforms_proficy_dnp3_i\/o_driver | 7.20:h |
| ge | intelligent_platforms_proficy_dnp3_i\/o_driver | 7.20:i |
| ge | intelligent_platforms_proficy_hmi\/scada_cimplicity | 4.01 |
| ge | intelligent_platforms_proficy_hmi\/scada_cimplicity | 7.5 |
| ge | intelligent_platforms_proficy_hmi\/scada_cimplicity | 8.0 |
| ge | intelligent_platforms_proficy_hmi\/scada_cimplicity | 8.1 |
| ge | intelligent_platforms_proficy_hmi\/scada_cimplicity | 8.2 |
| ge | intelligent_platforms_proficy_hmi\/scada_ifix | 5.0 |
| ge | intelligent_platforms_proficy_hmi\/scada_ifix | 5.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References