CVE-2023-6533

Malformed Device Reset Locally Command Class packets can be sent to the controller, causing the controller to assume the end device has left the network. After this, frames sent by the end device will not be acknowledged by the controller. This vulnerability exists in PC Controller v5.54.0, and earlier. 
Configurations

No configuration.

History

22 Feb 2024, 19:07

Type Values Removed Values Added
Summary
  • (es) Se pueden enviar paquetes de clase de comando de reinicio local de dispositivo con formato incorrecto al controlador, lo que hace que el controlador asuma que el dispositivo final ha abandonado la red. Después de esto, el controlador no reconocerá las tramas enviadas por el dispositivo final. Esta vulnerabilidad existe en PC Controller v5.54.0 y versiones anteriores.

21 Feb 2024, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-21 20:15

Updated : 2024-02-22 19:07


NVD link : CVE-2023-6533

Mitre link : CVE-2023-6533

CVE.ORG link : CVE-2023-6533


JSON object : View

Products Affected

No product.

CWE
CWE-345

Insufficient Verification of Data Authenticity

CWE-754

Improper Check for Unusual or Exceptional Conditions