Release date:
Updated on:
Affected Systems:
Schneider Electric Telvent SAGE 3030 RTU C3413-500-001F0_PB
Schneider Electric Telvent SAGE 3030 RTU C3413-500-001D3_P4
Description:
--------------------------------------------------------------------------------
Bugtraq id: 65262
CVE (CAN) ID: CVE-2013-6143
Telvent SAGE 3030 RTU is an industrial data communication device.
When Telvent SAGE 3030 RTU C3413-500-001D3_P4 and C3413-500-001F0_PB process certain inputs, the DNP3 Service has an error that can cause a crash and cause a denial of service.
<* Source: Adam Crain
Automatak
Chris Sistrunk
Link: https://xforce.iss.net/xforce/xfdb/90840
Http://ics-cert.us-cert.gov/advisories/ICSA-14-006-01
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Schneider Electric
------------------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.schneider-electric.com/sites/corporate/en/support/cybersecurity/cyber-security-vulnerabil