CVE-2023-28831

The OPC UA implementations (ANSI C and C++) in affected products contain an integer overflow vulnerability that could cause the application to run into an infinite loop during certificate validation.

This could allow an unauthenticated remote attacker to create a denial of service condition by sending a specially crafted certificate.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
siemensCNA
7.5 HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:P/RL:O/RC:C
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 66%
VendorProductVersion
siemenssimatic_cloud_connect_7_cc712_firmware
𝑥
< 2.2
siemenssimatic_cloud_connect_7_cc716_firmware
𝑥
< 2.2
siemenssimatic_drive_controller_cpu_1504d_tf_firmware
𝑥
< 2.2
siemenssimatic_drive_controller_cpu_1507d_tf_firmware
𝑥
< 2.9.7
siemenssimatic_et_200sp_open_controller_cpu_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1200_cpu_firmware
𝑥
< 3.0.3
siemenssimatic_s7-1500_cpu_1510sp-1_pn_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_cpu_1510sp_f-1_pn_firmware
𝑥
< 3.0.3
siemenssimatic_s7-1500_cpu_1511-1_pn_firmware
𝑥
< 21.9.7
siemenssimatic_s7-1500_cpu_1511c-1_pn_firmware
𝑥
< 30.0.0
siemenssimatic_s7-1500_cpu_1511f-1_pn_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_cpu_1511t-1_pn_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_cpu_1511tf-1_pn_firmware
𝑥
< 3.0.3
siemenssimatic_s7-1500_cpu_1512c-1_pn_firmware
𝑥
< 3.0.3
siemenssimatic_s7-1500_cpu_1512sp-1_pn_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_cpu_1512sp_f-1_pn_firmware
𝑥
< 3.0.3
siemenssimatic_s7-1500_cpu_1513-1_pn_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_cpu_1513f-1_pn_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_cpu_1513r-1_pn_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_cpu_1514sp-2_pn_firmware
𝑥
< 3.0.3
siemenssimatic_s7-1500_cpu_1514sp_f-2_pn_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_cpu_1514spt-2_pn_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_cpu_1514spt_f-2_pn_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_cpu_1515-2_pn_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_cpu_1515f-2_pn_firmware
𝑥
< 3.0.3
siemenssimatic_s7-1500_cpu_1515r-2_pn_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_cpu_1515t-2_pn_firmware
𝑥
< 3.0.3
siemenssimatic_s7-1500_cpu_1515tf-2_pn_firmware
𝑥
< 3.0.3
siemenssimatic_s7-1500_cpu_1516-3_pn\/dp_firmware
𝑥
< 3.0.3
siemenssimatic_s7-1500_cpu_1516f-3_pn\/dp_firmware
𝑥
< 3.0.3
siemenssimatic_s7-1500_cpu_1516t-3_pn\/dp_firmware
𝑥
< 3.0.3
siemenssimatic_s7-1500_cpu_1516tf-3_pn\/dp_firmware
𝑥
< 3.0.3
siemenssimatic_s7-1500_cpu_1517-3_pn\/dp_firmware
𝑥
< 3.0.3
siemenssimatic_s7-1500_cpu_1517f-3_pn\/dp_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_cpu_1517h-3_pn_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_cpu_1517t-3_pn\/dp_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_cpu_1517tf-3_pn\/dp_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_cpu_1518-4_pn\/dp_firmware
𝑥
< 21.9.7
siemenssimatic_s7-1500_cpu_1518-4_pn\/dp_mfp_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_cpu_1518f-4_pn\/dp_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_cpu_1518f-4_pn\/dp_mfp_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_cpu_1518hf-4_pn_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_cpu_1518t-4_pn\/dp_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_cpu_1518tf-4_pn\/dp_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_cpu_s7-1518-4_pn\/dp_odk_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_cpu_s7-1518f-4_pn\/dp_odk_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_et_200pro_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_software_controller_firmware
𝑥
< 2.9.7
siemenssimatic_s7-1500_software_controller_firmware
𝑥
< 2.9.7
siemenssimatic_s7-plcsim_advanced_firmware
𝑥
< 2.9.7
siemenssiplus_et_200sp_cpu_1510sp-1_pn_firmware
𝑥
< 2.9.7
siemenssiplus_et_200sp_cpu_1510sp-1_pn_rail_firmware
𝑥
< 2.9.7
siemenssiplus_et_200sp_cpu_1510sp_f-1_pn_firmware
𝑥
< 2.9.7
siemenssiplus_et_200sp_cpu_1510sp_f-1_pn_rail_firmware
𝑥
< 2.9.7
siemenssiplus_et_200sp_cpu_1512sp-1_pn_firmware
𝑥
< 2.9.7
siemenssiplus_et_200sp_cpu_1512sp-1_pn_rail_firmware
𝑥
< 2.9.7
siemenssiplus_et_200sp_cpu_1512sp_f-1_pn_firmware
𝑥
< 2.9.7
siemenssiplus_et_200sp_cpu_1512sp_f-1_pn_rail_firmware
𝑥
< 2.9.7
siemenssiplus_s7-1500_cpu_1511-1_pn_firmware
𝑥
< 2.9.7
siemenssiplus_s7-1500_cpu_1511-1_pn_t1_rail_firmware
𝑥
< 2.9.7
siemenssiplus_s7-1500_cpu_1511-1_pn_tx_rail_firmware
𝑥
< 2.9.7
siemenssiplus_s7-1500_cpu_1511f-1_pn_firmware
𝑥
< 2.9.7
siemenssiplus_s7-1500_cpu_1513-1_pn_firmware
𝑥
< 2.9.7
siemenssiplus_s7-1500_cpu_1513f-1_pn_firmware
𝑥
< 2.9.7
siemenssiplus_s7-1500_cpu_1515f-2_pn_firmware
𝑥
< 2.9.7
siemenssiplus_s7-1500_cpu_1515f-2_pn_rail_firmware
𝑥
< 2.9.7
siemenssiplus_s7-1500_cpu_1515f-2_pn_t2_rail_firmware
𝑥
< 2.9.7
siemenssiplus_s7-1500_cpu_1515r-2_pn_firmware
𝑥
< 2.9.7
siemenssiplus_s7-1500_cpu_1515r-2_pn_tx_rail_firmware
𝑥
< 2.9.7
siemenssiplus_s7-1500_cpu_1516-3_pn\/dp_firmware
𝑥
< 2.9.7
siemenssiplus_s7-1500_cpu_1516-3_pn\/dp_rail_firmware
𝑥
< 2.9.7
siemenssiplus_s7-1500_cpu_1516-3_pn\/dp_tx_rail_firmware
𝑥
< 2.9.7
siemenssiplus_s7-1500_cpu_1516f-3_pn\/dp_firmware
𝑥
< 2.9.7
siemenssiplus_s7-1500_cpu_1516f-3_pn\/dp_rail_firmware
𝑥
< 2.9.7
siemenssiplus_s7-1500_cpu_1517h-3_pn_firmware
𝑥
< 3.0.3
siemenssiplus_s7-1500_cpu_1518-4_pn\/dp_firmware
𝑥
< 3.0.3
siemenssiplus_s7-1500_cpu_1518-4_pn\/dp_mfp_firmware
𝑥
< 3.0.3
siemenssiplus_s7-1500_cpu_1518f-4_pn\/dp_firmware
𝑥
< 3.0.3
siemenssiplus_s7-1500_cpu_1518hf-4_pn_firmware
𝑥
< 3.0.3
𝑥
= Vulnerable software versions