CVE-2021-31346
CVE-2021-31346
In short
A flaw in several industrial devices fails to validate the size of ICMP network packets, allowing attackers to send specially crafted packets that can leak sensitive information or crash the system.
Technical detail
The vulnerability exists in ICMP payload length validation at the IP header level across multiple Siemens industrial products. An unauthenticated attacker can send malformed ICMP packets with unchecked payload sizes to trigger memory buffer issues, resulting in information disclosure or denial-of-service depending on memory layout.
Summary generated and translated by AI from the official description.
A vulnerability has been identified in Capital Embedded AR Classic 431-422 (All versions), Capital Embedded AR Classic R20-11 (All versions < V2303), PLUSCONTROL 1st Gen (All versions), SIMOTICS CONNECT 400 (All versions < V0.5.0.0), SIMOTICS CONNECT 400 (All versions < V1.0.0.0). The total length of an ICMP payload (set in the IP header) is unchecked. This may lead to various side effects, including Information Leak and Denial-of-Service conditions, depending on the network buffer organization in memory. (FSMD-2021-0007)
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H
Affected products
Siemens · Capital Embedded AR Classic 431-422Siemens · Capital Embedded AR Classic R20-11Siemens · PLUSCONTROL 1st GenSiemens · SIMOTICS CONNECT 400Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
https://cert-portal.siemens.com/productcert/html/ssa-044112.htmlhttps://cert-portal.siemens.com/productcert/html/ssa-114589.htmlhttps://cert-portal.siemens.com/productcert/html/ssa-223353.htmlhttps://cert-portal.siemens.com/productcert/html/ssa-620288.htmlhttps://cert-portal.siemens.com/productcert/html/ssa-845392.htmlhttps://cert-portal.siemens.com/productcert/pdf/ssa-044112.pdfhttps://cert-portal.siemens.com/productcert/pdf/ssa-114589.pdfhttps://cert-portal.siemens.com/productcert/pdf/ssa-223353.pdfhttps://cert-portal.siemens.com/productcert/pdf/ssa-620288.pdfhttps://cert-portal.siemens.com/productcert/pdf/ssa-845392.pdf