CVE-2018-5473
Summary
| CVE | CVE-2018-5473 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-02-19 18:29:00 UTC |
| Updated | 2022-04-19 16:06:00 UTC |
| Description | An Improper Restriction of Operations within the Bounds of a Memory Buffer issue was discovered in GE D60 Line Distance Relay devices running firmware Version 7.11 and prior. The SSH functions of the device are vulnerable to buffer overflow conditions that may allow a remote attacker to execute arbitrary code on the device. |
Risk And Classification
Problem Types: CWE-119
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Ge | D60 Line Distance Relay | - | All | All | All |
| Operating System | Ge | D60 Line Distance Relay Firmware | All | All | All | All |
| Hardware | Gegridsolutions | D60 Line Distance Relay | - | All | All | All |
| Hardware | Gegridsolutions | D60 Line Distance Relay | - | All | All | All |
| Operating System | Gegridsolutions | D60 Line Distance Relay Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| General Electric D60 Line Distance Relay Multiple Buffer Overflow Vulnerabilities | BID | www.securityfocus.com | Third Party Advisory, VDB Entry |
| GE D60 Line Distance Relay | CISA | MISC | ics-cert.us-cert.gov | Third Party Advisory, US Government Resource |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.