Stack-based buffer overflow in the Profinet DCP protocol implementation on the Siemens Scalance S Security Module firewall S602 V2, S612 V2, and S613 V2 with firmware before 2.3.0.3 allows remote attackers to cause a denial of service (device outage) or possibly execute arbitrary code via a crafted DCP frame.
2012-04-18T10:33:34.933
2025-04-11T00:51:21.963
Deferred
CVSSv2: 6.1 (MEDIUM)
AV:A/AC:L/Au:N/C:N/I:N/A:C
6.5
6.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | siemens | scalance_s_firmware | ≤ 2.3.0 | Yes |
Application | siemens | scalance_s_firmware | 2.1.0 | Yes |
Application | siemens | scalance_s_firmware | 2.2.0 | Yes |
Hardware | siemens | scalance_s602 | v2 | Yes |
Hardware | siemens | scalance_s612 | v2 | Yes |
Hardware | siemens | scalance_s613 | v2 | Yes |