An attacker could send a specially crafted packet that could have CodeMeter (All versions prior to 7.10) send back packets containing data from the heap.
The product does not release or incorrectly releases a resource before it is made available for re-use.
Link | Tags |
---|---|
https://us-cert.cisa.gov/ics/advisories/icsa-20-203-01 | third party advisory us government resource |