Wednesday, September 15, 2021

Review - 21 Updates Published – 9-14-21

Yesterday CISA’s NCCIC-ICS published updates for 21 control system security advisories for products from Siemens (19), HCC Embedded, and Mitsubishi.

SCALANCE Update #1 - This update provides additional information on an advisory that was originally published on August 13th, 2019 and most recently updated on February 9th, 2021.

Industrial Products Update - This update provides additional information on an advisory that was originally published on September 10th, 2019 and most recently updated on July 13th, 2021.

PROFINET-IO Update - This update provides additional information on an advisory that was originally published on February 11th, 2020 and most recently updated on March 9th, 2021.

SCALANCE Update #2 - This update provides additional information on an advisory that was originally published on April 14th, 2020 and most recently updated on September 8th, 2020.

SIMATIC Update #1 - This update provides additional information on an advisory that was originally published on July 9th, 2020 and most recently updated on June 8th, 2021.

SCALANCE Update #3 - This update provides additional information on an advisory that was originally published on January 12th, 2021 and most recently updated on February 9th, 2021.

SCALANCE Update #4 - This update provides additional information on an advisory that was originally published on January 12th, 2021 and most recently updated on February 9th, 2021.

TIA Update - This update provides additional information on an advisory that was originally published on February 9th, 2021.

SCALANCE Update #5 - This update provides additional information on an advisory that was originally published on March 9th, 2021 and most recently updated on May 11th, 2021.

Web Server Update - This update provides additional information on an advisory that was originally published on March 13th, 2021.

SIMATIC Update #2 - This update provides additional information on an advisory that was originally published on May 11th, 2021.

Linux-based Product Update - This update provides additional information on an advisory that was originally published on May 11th, 2021 and most recently updated on August 10th, 2021.

SIMATIC Update #3 - This update provides additional information on an advisory that was originally published on June 1st, 2021.

SINUMERIK Update - This update provides additional information on an advisory that was originally published on July 13th, 2021.

SINAMICS Update - This update provides additional information on an advisory that was originally published on July 13th, 2021.

SIMATIC Update #4 - This update provides additional information on an advisory that was was originally published on July 13th, 2021.

PROFINET Update - This update provides additional information on an advisory that was originally published on July 11th, 2021 and most recently updated on August 10th, 2021.

SIMATIC Update #5 - This update provides additional information on an advisory that was originally published on August 10th, 2021.

JT2Go Update - This update provides additional information on an advisory that was originally published on August 10th, 2021.

HCC Embedded Update - This update provides additional information on an advisory that was originally published on August 5th, 2021.

Mitsubishi Update - This update provides additional information on an advisory that was originally published on November 19th, 2020 and most recently updated on May 18th, 2021.

Other Updates - Siemens published five additional updates yesterday that were not covered by NCCIC-ICS updates. And Schneider published three updates that have not yet been addressed by NCCIC-ICS. I will be covering them this weekend in my “ICS Public Disclosure” article.

For additional information on the updates, including lists of the fixed products, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/21-updates-published-9-14-21 - subscription required.

No comments:

 
/* Use this with templates/template-twocol.html */