CVE-2024-34057
HIGHDescription
Triangle Microworks TMW IEC 61850 Client source code libraries before 12.2.0 lack a buffer size check when processing received messages. The resulting buffer overflow can cause a crash, resulting in a denial of service.
Is your site exposed to CVE-2024-34057?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| trianglemicroworks | iec_61850_source_code_library |
| siemens | sicam_a8000_firmware |
| siemens | sicam_a8000 |
| siemens | sicam_scc_firmware |
| siemens | sicam_scc |
| siemens | sicam_egs_firmware |
| siemens | sicam_egs |
| siemens | sicam_s8000 |
| siemens | sitipe_at |
References
Frequently Asked Questions
What is CVE-2024-34057? +
How severe is CVE-2024-34057? +
What products are affected by CVE-2024-34057? +
How do I check if I'm vulnerable to CVE-2024-34057? +
Related Vulnerabilities
zlib is a Ruby interface for the zlib compression/decompression library. Versions 3.0.0 and below, 3.1.0, 3.1.1, 3.2.0 and 3.2.1 contain …
A denial-of-service issue exists in 5380/5480/5580 controllers boot firmware lower than version 1.072. This vulnerability could potentially allow a malicious …
A denial-of-service issue exists in 5380/5480/5580 controllers. This vulnerability could potentially allow a malicious user to write invalid file data …
A denial-of-service issue exists in 5370/5570 controllers. This vulnerability could potentially allow a remote user to load an invalid project, …
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Newtec NTC2218, NTC2250, NTC2299 on Linux, PowerPC, ARM …
An unauthenticated attacker on the WAN interface, with the ability to intercept Dynamic DNS (DDNS) traffic between DDNS services and …