OSIsoft PI Interface for IEEE C37.118 Invalid Memory Denial of Service Vulnerability
BID:61767
Info
OSIsoft PI Interface for IEEE C37.118 Invalid Memory Denial of Service Vulnerability
| Bugtraq ID: | 61767 |
| Class: | Design Error |
| CVE: |
CVE-2013-2801 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 13 2013 12:00AM |
| Updated: | Aug 13 2013 12:00AM |
| Credit: | OSIsoft |
| Vulnerable: |
OSISoft PI Interface for IEEE C37.118 1.0.6 |
| Not Vulnerable: |
OSISoft PI Interface for IEEE C37.118 1.0.6.158 |
Discussion
OSIsoft PI Interface for IEEE C37.118 Invalid Memory Denial of Service Vulnerability
PI Interface for IEEE C37.118 is prone to a remote denial-of-service vulnerability.
An attacker can exploit this issue to crash the affected application, denying service to legitimate users.
PI Interface for IEEE C37.118 prior to version 1.0.6.158 are vulnerable.
PI Interface for IEEE C37.118 is prone to a remote denial-of-service vulnerability.
An attacker can exploit this issue to crash the affected application, denying service to legitimate users.
PI Interface for IEEE C37.118 prior to version 1.0.6.158 are vulnerable.
Exploit / POC
OSIsoft PI Interface for IEEE C37.118 Invalid Memory Denial of Service Vulnerability
An attacker can exploit this issue using readily available tools.
An attacker can exploit this issue using readily available tools.
Solution / Fix
OSIsoft PI Interface for IEEE C37.118 Invalid Memory Denial of Service Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
OSIsoft PI Interface for IEEE C37.118 Invalid Memory Denial of Service Vulnerability
References:
References:
- PI System Standards (OSIsoft)
- Advisory (ICSA-13-225-02) OSIsoft Multiple Vulnerabilities (ICS-CERT)