Vulnerability Description
An attacker-controlled memory allocation size can be passed to the C++ new operator in RnaDaSvr.dll by sending a specially crafted ConfigureItems message to TCP port 4241. This will cause an unhandled exception, resulting in termination of RSLinxNG.exe. Observed in FactoryTalk 6.11. All versions of FactoryTalk Linx are affected.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Rockwellautomation | Factorytalk Linx | <= 6.11 |
Related Weaknesses (CWE)
References
- https://www.tenable.com/security/research/tra-2020-71Third Party Advisory
- https://www.tenable.com/security/research/tra-2020-71Third Party Advisory
FAQ
What is CVE-2020-5802?
CVE-2020-5802 is a vulnerability with a CVSS score of 7.5 (HIGH). An attacker-controlled memory allocation size can be passed to the C++ new operator in RnaDaSvr.dll by sending a specially crafted ConfigureItems message to TCP port 4241. This will cause an unhandled...
How severe is CVE-2020-5802?
CVE-2020-5802 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-5802?
Check the references section above for vendor advisories and patch information. Affected products include: Rockwellautomation Factorytalk Linx.