Vulnerability Description
Multiple stack-based buffer overflows in RobNetScanHost.exe in ABB Robot Communications Runtime before 5.14.02, as used in ABB Interlink Module, IRC5 OPC Server, PC SDK, PickMaster 3 and 5, RobView 5, RobotStudio, WebWare SDK, and WebWare Server, allow remote attackers to execute arbitrary code via a crafted (1) 0xA or (2) 0xE Netscan packet.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Abb | Interlink Module | - |
| Abb | Irc5 Opc Server | - |
| Abb | Pc Sdk | - |
| Abb | Pickmaster 3 | - |
| Abb | Pickmaster 5 | - |
| Abb | Robot Communications Runtime | <= 5.14.01 |
| Abb | Robotstudio | - |
| Abb | Robview 5 | - |
| Abb | Webware Sdk | - |
| Abb | Webware Server | - |
Related Weaknesses (CWE)
References
- http://archives.neohapsis.com/archives/bugtraq/2012-02/0125.html
- http://secunia.com/advisories/48090Vendor Advisory
- http://www.securityfocus.com/bid/52123
- http://www.us-cert.gov/control_systems/pdf/ICSA-12-059-01.pdfPatchUS Government Resource
- http://www.zerodayinitiative.com/advisories/ZDI-12-033/
- http://www05.abb.com/global/scot/scot348.nsf/veritydisplay/f261be074480dc24c1257
- http://archives.neohapsis.com/archives/bugtraq/2012-02/0125.html
- http://secunia.com/advisories/48090Vendor Advisory
- http://www.securityfocus.com/bid/52123
- http://www.us-cert.gov/control_systems/pdf/ICSA-12-059-01.pdfPatchUS Government Resource
- http://www.zerodayinitiative.com/advisories/ZDI-12-033/
- http://www05.abb.com/global/scot/scot348.nsf/veritydisplay/f261be074480dc24c1257
FAQ
What is CVE-2012-0245?
CVE-2012-0245 is a vulnerability with a CVSS score of 10.0 (HIGH). Multiple stack-based buffer overflows in RobNetScanHost.exe in ABB Robot Communications Runtime before 5.14.02, as used in ABB Interlink Module, IRC5 OPC Server, PC SDK, PickMaster 3 and 5, RobView 5,...
How severe is CVE-2012-0245?
CVE-2012-0245 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2012-0245?
Check the references section above for vendor advisories and patch information. Affected products include: Abb Interlink Module, Abb Irc5 Opc Server, Abb Pc Sdk, Abb Pickmaster 3, Abb Pickmaster 5.