Skip to content

CVE-2020-13556: Out-of-bounds write in OpENer EtherNet/IP stack #77

@senier

Description

@senier

Description

An out-of-bounds write vulnerability exists in the Ethernet/IP server functionality of EIP Stack Group OpENer 2.3 and development commit 8c73bf3. A specially crafted series of network requests can lead to remote code execution. An attacker can send a sequence of requests to trigger this vulnerability.

Root cause

Out-of-bounds write.

Software

Name

EIP Stack Group OpENer

Versions affected

2.3 - 8c73bf3

Fix

EIPStackGroup/OpENer@8c73bf3

Exploit

Links

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions