Tuesday, June 13, 2023

Review – 4 Advisories Published 6-13-23

Today, CISA’s NCCIC-ICS published four control system security advisories for products from Rockwell Automation (3) and Datalogics.

Advisories

Rockwell Advisory #1 - This advisory describes an uncontrolled resource consumption vulnerability in the Rockwell FactoryTalk Transaction Manager.

Rockwell Advisory #2 - This advisory discusses an out-of-bounds read vulnerability in the Rockwell FactoryTalk Edge Gateway.

Rockwell Advisory #3 - This advisory describes three vulnerabilities in the Rockwell FactoryTalk Services Platform.

Datalogics Advisory - This advisory discusses a stack-based buffer overflow in the Datalogics Library APDFL v18.0.4PlusP1e.

 

For more information on these advisories, including a brief discussion about the history of the Datalogics advisory, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/4-advisories-published-6-13-23 - subscription required.

No comments:

 
/* Use this with templates/template-twocol.html */