Friday, November 11, 2022

Review – 9 Updates Published 11-10-22

Yesterday, CISA’s NCCIC-ICS published nine control system security updates for products from LS Electric, Delta Electronics, and Siemens (7). Siemens published two additional updates on Tuesday that will be covered here this weekend.

LS Electric Update - This update provides additional information on an advisory that was originally published on August 16th, 2022.

Delta Update - This update provides additional information on an advisory that was originally published on October 25th, 2022.

RUGGEDCOM Update #1 - This update provides additional information on an advisory that was originally published on March 10th, 2022 and most recently updated on June 16th, 2022.

RUGGEDCOM Update #2 - This update provides additional information on an advisory that was originally published on September 15th, 2022.

Questa Update - This update provides additional information on an advisory that was originally published on December 16th, 2021.

NOTE: The Siemens update notes that the ‘fixed’ version announced in the NCCIC-ICS advisory is only the initial phase of the fix that will be applied “over several releases”.

SCLANACE Update #1 - This update provides additional information on an advisory that was originally published on October 13th, 2022.

SCLANACE Update #2 - This update provides additional information on an advisory that was originally published on October 13th, 2022.

Mendix Update - This update provides additional information on an advisory that was originally published on September 15th, 2022.

Capital VSTAR Update - This update provides additional information on an advisory that was originally published on December 16th, 2021.

 

For more details about these vulnerabilities, including a summary of the changes being made, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/9-updates-published-11-10-22 11-11-22 - subscription required.

No comments:

 
/* Use this with templates/template-twocol.html */