CVE-2016-9343

CRITICALCVSS 10/10EPSS 10.49%

Last modified

CVE-2016-9343 is a critical-severity vulnerability rated 10/10 on the CVSS scale. An issue was discovered in Rockwell Automation Logix5000 Programmable Automation Controller FRN 16.00 through 21.00 (excluding all firmware versions prior to FRN 16.00, which are not affected). By sending malformed common industrial protocol (CIP) packet, an attacker may be able to overflow a stack-based buffer and execute code on the controller or initiate a nonrecoverable fault resulting in a denial of service.. EPSS estimates a 10.49% chance of exploitation in the next 30 days.

Description

An issue was discovered in Rockwell Automation Logix5000 Programmable Automation Controller FRN 16.00 through 21.00 (excluding all firmware versions prior to FRN 16.00, which are not affected). By sending malformed common industrial protocol (CIP) packet, an attacker may be able to overflow a stack-based buffer and execute code on the controller or initiate a nonrecoverable fault resulting in a denial of service.

Metrics

CVSS 3.1
10/10

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

EPSS Probability
10.49%

95.2th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
RockwellautomationSoftlogix 5800 Controller Firmware18.00
RockwellautomationSoftlogix 5800 Controller Firmware19.00
RockwellautomationSoftlogix 5800 Controller Firmware20.00
RockwellautomationSoftlogix 5800 Controller Firmware21.00
RockwellautomationRslogix Emulate 5000 Firmware18.00
RockwellautomationRslogix Emulate 5000 Firmware19.00
RockwellautomationRslogix Emulate 5000 Firmware20.00
RockwellautomationRslogix Emulate 5000 Firmware21.00
RockwellautomationGuardlogix 5570 Controller Firmware16.00
RockwellautomationGuardlogix 5570 Controller Firmware17.00
RockwellautomationGuardlogix 5570 Controller Firmware18.00
RockwellautomationGuardlogix 5570 Controller Firmware19.00
RockwellautomationGuardlogix 5570 Controller Firmware20.00
RockwellautomationGuardlogix 5570 Controller Firmware20.010
RockwellautomationGuardlogix 5570 Controller Firmware20.017
RockwellautomationGuardlogix 5570 Controller Firmware21.00
RockwellautomationFlexlogix L34 Controller Firmware16.00
RockwellautomationControllogix L55 Controller Firmware16.00
RockwellautomationControllogix L55 Controller Firmware16.020
RockwellautomationControllogix L55 Controller Firmware16.022
RockwellautomationControllogix 5570 Redundant Controller Firmware20.00
RockwellautomationControllogix 5570 Redundant Controller Firmware20.050
RockwellautomationControllogix 5570 Redundant Controller Firmware20.055
RockwellautomationControllogix 5570 Redundant Controller Firmware21.00
RockwellautomationControllogix 5570 Controller Firmware18.00
RockwellautomationControllogix 5570 Controller Firmware19.00
RockwellautomationControllogix 5570 Controller Firmware20.010
RockwellautomationControllogix 5570 Controller Firmware20.013
RockwellautomationControllogix 5570 Controller Firmware21.00
RockwellautomationControllogix 5560 Redundant Controller Firmware16.00
RockwellautomationControllogix 5560 Redundant Controller Firmware19.00
RockwellautomationControllogix 5560 Redundant Controller Firmware20.00
RockwellautomationControllogix 5560 Redundant Controller Firmware20.050
RockwellautomationControllogix 5560 Redundant Controller Firmware20.055
RockwellautomationControllogix 5560 Controller Firmware16.00
RockwellautomationControllogix 5560 Controller Firmware16.020
RockwellautomationControllogix 5560 Controller Firmware16.022
RockwellautomationControllogix 5560 Controller Firmware17.00
RockwellautomationControllogix 5560 Controller Firmware18.00
RockwellautomationControllogix 5560 Controller Firmware19.00
RockwellautomationControllogix 5560 Controller Firmware20.00
RockwellautomationControllogix 5560 Controller Firmware20.010
RockwellautomationControllogix 5560 Controller Firmware20.013
Rockwellautomation1769 Compactlogix L3x Controller Firmware16.00
Rockwellautomation1769 Compactlogix L3x Controller Firmware16.020
Rockwellautomation1769 Compactlogix L3x Controller Firmware16.023
Rockwellautomation1769 Compactlogix L3x Controller Firmware17.00
Rockwellautomation1769 Compactlogix L3x Controller Firmware18.00
Rockwellautomation1769 Compactlogix L3x Controller Firmware19.00
Rockwellautomation1769 Compactlogix L3x Controller Firmware20.00

Showing 50 of 85 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2016-9343?
An issue was discovered in Rockwell Automation Logix5000 Programmable Automation Controller FRN 16.00 through 21.00 (excluding all firmware versions prior to FRN 16.00, which are not affected). By sending malformed common industrial protocol (CIP) packet, an attacker may be able to overflow a stack-based buffer and execute code on the controller or initiate a nonrecoverable fault resulting in a denial of service.
How severe is CVE-2016-9343?
CVE-2016-9343 has a CVSS score of 10/10 (CRITICAL severity). The EPSS model estimates a 10.49% probability of exploitation in the next 30 days.
How do I fix CVE-2016-9343?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2016-9343?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST