CVE-2014-9203

Buffer overflow in the Field Device Tool (FDT) Frame application in the HART Device Type Manager (DTM) library, as used in MACTek Bullet DTM 1.00.0, GE Vector DTM 1.00.0, GE SVi1000 Positioner DTM 1.00.0, GE SVI II AP Positioner DTM 2.00.1, and GE 12400 Level Transmitter DTM 1.00.0, allows remote attackers to cause a denial of service (DTM outage) via crafted packets.
References
Link Resource
http://www.geoilandgas.com/securityadvisory Vendor Advisory
https://ics-cert.us-cert.gov/advisories/ICSA-15-036-01 Third Party Advisory US Government Resource
http://www.geoilandgas.com/securityadvisory Vendor Advisory
https://ics-cert.us-cert.gov/advisories/ICSA-15-036-01 Third Party Advisory US Government Resource
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ge:12400_level_transmitter_device_type_manager:1.00.0:*:*:*:*:*:*:*
cpe:2.3:a:ge:svi_ii_ap_positioner_device_type_manager:2.00.1:*:*:*:*:*:*:*
cpe:2.3:a:ge:vector_device_type_manager:1.00.0:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:mactek:bullet_device_type_manager:1.00.0:*:*:*:*:*:*:*

History

21 Nov 2024, 02:20

Type Values Removed Values Added
References () http://www.geoilandgas.com/securityadvisory - Vendor Advisory () http://www.geoilandgas.com/securityadvisory - Vendor Advisory
References () https://ics-cert.us-cert.gov/advisories/ICSA-15-036-01 - Third Party Advisory, US Government Resource () https://ics-cert.us-cert.gov/advisories/ICSA-15-036-01 - Third Party Advisory, US Government Resource

Information

Published : 2015-02-07 15:59

Updated : 2024-11-21 02:20


NVD link : CVE-2014-9203

Mitre link : CVE-2014-9203

CVE.ORG link : CVE-2014-9203


JSON object : View

Products Affected

mactek

  • bullet_device_type_manager

ge

  • 12400_level_transmitter_device_type_manager
  • svi_ii_ap_positioner_device_type_manager
  • vector_device_type_manager
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer