An unauthenticated remote attacker could create a permanent denial-of-service condition by sending specially crafted OSPF packets. Successful exploitation requires OSPF to be enabled on an affected device on the SCALANCE XM-400, XR-500 (All versions prior to v6.4).
The product performs a calculation that generates incorrect or unintended results that are later used in security-critical decisions or resource management.
Link | Tags |
---|---|
https://us-cert.cisa.gov/ics/advisories/icsa-21-131-10 | third party advisory us government resource |
https://cert-portal.siemens.com/productcert/pdf/ssa-116379.pdf | vendor advisory |