CVE-2022-1797
02.06.2022, 14:15
A malformed Class 3 common industrial protocol message with a cached connection can cause a denial-of-service condition in Rockwell Automation Logix Controllers, resulting in a major nonrecoverable fault. If the target device becomes unavailable, a user would have to clear the fault and redownload the user project file to bring the device back online.Enginsight
Vendor | Product | Version |
---|---|---|
rockwellautomation | compactlogix_5380_firmware | 𝑥 < 33.011 |
rockwellautomation | compact_guardlogix_5380_firmware | 𝑥 < 33.011 |
rockwellautomation | compactlogix_5480_firmware | 𝑥 < 33.011 |
rockwellautomation | controllogix_5580_firmware | 𝑥 < 33.011 |
rockwellautomation | guardlogix_5580_firmware | 𝑥 < 33.011 |
rockwellautomation | compactlogix_5370_firmware | 𝑥 < 34.011 |
rockwellautomation | compact_guardlogix_5370_firmware | 𝑥 < 34.011 |
rockwellautomation | controllogix_5570_firmware | 𝑥 < 34.011 |
rockwellautomation | guardlogix_5570_firmware | 𝑥 < 34.011 |
𝑥
= Vulnerable software versions