CVE-2017-16740

A Buffer Overflow issue was discovered in Rockwell Automation Allen-Bradley MicroLogix 1400 Controllers, Series B and C Versions 21.002 and earlier. The stack-based buffer overflow vulnerability has been identified, which may allow remote code execution.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:rockwellautomation:1766-l32bxba_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:rockwellautomation:1766-l32bxba:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:rockwellautomation:1766-l32awa_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:rockwellautomation:1766-l32awa:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:rockwellautomation:1766-l32bxb_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:rockwellautomation:1766-l32bxb:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:rockwellautomation:1766-l32bwaa_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:rockwellautomation:1766-l32bwaa:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:rockwellautomation:1766-l32awaa_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:rockwellautomation:1766-l32awaa:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:rockwellautomation:1766-l32bwa_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:rockwellautomation:1766-l32bwa:-:*:*:*:*:*:*:*

History

21 Nov 2024, 03:16

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/102474 - Mitigation, Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/102474 - Mitigation, Third Party Advisory, VDB Entry
References () https://ics-cert.us-cert.gov/advisories/ICSA-18-009-01 - Third Party Advisory, US Government Resource () https://ics-cert.us-cert.gov/advisories/ICSA-18-009-01 - Third Party Advisory, US Government Resource
References () https://rockwellautomation.custhelp.com/app/answers/detail/a_id/1070883 - () https://rockwellautomation.custhelp.com/app/answers/detail/a_id/1070883 -

Information

Published : 2018-01-09 21:29

Updated : 2024-11-21 03:16


NVD link : CVE-2017-16740

Mitre link : CVE-2017-16740

CVE.ORG link : CVE-2017-16740


JSON object : View

Products Affected

rockwellautomation

  • 1766-l32bwaa_firmware
  • 1766-l32awaa_firmware
  • 1766-l32bwa
  • 1766-l32bxba_firmware
  • 1766-l32bxb
  • 1766-l32bxb_firmware
  • 1766-l32bwa_firmware
  • 1766-l32awaa
  • 1766-l32bxba
  • 1766-l32awa
  • 1766-l32awa_firmware
  • 1766-l32bwaa
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer