Headline
CVE-2022-30938
A vulnerability has been identified in EN100 Ethernet module DNP3 IP variant (All versions), EN100 Ethernet module IEC 104 variant (All versions), EN100 Ethernet module IEC 61850 variant (All versions < V4.40), EN100 Ethernet module Modbus TCP variant (All versions), EN100 Ethernet module PROFINET IO variant (All versions). Affected applications contains a memory corruption vulnerability while parsing specially crafted HTTP packets to /txtrace endpoint manupulating a specific argument. This could allow an attacker to crash the affected application leading to a denial of service condition
%PDF-1.5 %���� 60 0 obj << /Length 2522 /Filter /FlateDecode >> stream x��Z[S�H~�W�Q�Z7}����I1;����yPl��+�0��s�"#�±G�JZm��s�Υ�G������*2�H*��]�0�RF�$�����s<���t^�T�x�NV�`HD�������)+0�p���z�X~�/��Iyz~3��ǃ?ƿ����D�!�R�D�ǣ��h ��aČ��ݛ� �`<�FG�=�A��o��O ����hj���k�N?H0d�Ru ���AA�����1�fS ""t�� E����5R[f�#l� @�B�����5 �Fې�R��a�l��ֺCJ5�D�"��6 ,1�IS��E���e��o �0FX�>0��;�Q3Ą�&�%�0m �q q����<��ͬsm�a`’�{�a`k.w��Vf�@��3d�#�E�9QH��@�"Doc�S�5�ϯ��K���b