In Yokogawa WideField3 R1.01 - R4.03, a buffer overflow could be caused when a user loads a maliciously crafted project file.
Solution:
The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.
Link | Tags |
---|---|
https://www.cisa.gov/uscert/ics/advisories/icsa-20-273-02 | us government resource third party advisory mitigation |
https://www.yokogawa.com/library/resources/white-papers/yokogawa-security-advisory-report-list/ | vendor advisory |