QID 591093

Date Published: 2022-10-11

QID 591093: ABB Relion 650, Relion 670 Open Secure Sockets Layer (OpenSSL) Multiple Vulnerabilities (ABB-VU-PGGA-1MRG024369) (ABB-VU-PGGA-1MRG025160)

AFFECTED PRODUCTS
Relion 650 series version 2.1.0.2 and previous releases.
Relion 670 series version 2.1.0.2 and previous releases

QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of using passive scanning

An attacker who successfully exploited this vulnerability could cause a DoS of affected IED by allocating large amounts of memory potentially consuming excessive resources or exhausting memory

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution

    Customers are advised to refer to CERT MITIGATIONS section ABB-VU-PGGA-1MRG024369_ABB-VU-PGGA-1MRG025160 for affected packages and patching details.

    Software Advisories
    Advisory ID Software Component Link
    ABB-VU-PGGA-1MRG024369_ABB-VU-PGGA-1MRG025160 URL Logo search.abb.com/library/Download.aspx?DocumentID=9AKK107492A9254&LanguageCode=en&DocumentPartId=&Action=Launch&_ga=2.230574872.546603383.1631506049-655960548.1631071744