Siemens SCALANCE X-200RNA Switch Devices Improper Restriction of Operations within the Bounds of a Memory Buffer (CVE-2017-3735)

medium Tenable OT Security Plugin ID 503065

Synopsis

The remote OT asset is affected by a vulnerability.

Description

While parsing an IPAddressFamily extension in an X.509 certificate, it is possible to do a one-byte overread. This would result in an incorrect text display of the certificate. This bug has been present since 2006 and is present in all versions of OpenSSL before 1.0.2m and 1.1.0g.

This plugin only works with Tenable.ot.
Please visit https://www.tenable.com/products/tenable-ot for more information.

Solution

Refer to the vendor advisory.

See Also

https://cert-portal.siemens.com/productcert/pdf/ssa-412672.pdf

https://support.industry.siemens.com/cs/ww/en/view/109814809/

https://www.cisa.gov/news-events/ics-advisories/icsa-22-349-21

Plugin Details

Severity: Medium

ID: 503065

Version: 1.1

Type: remote

Family: Tenable.ot

Published: 3/13/2025

Updated: 3/13/2025

Supported Sensors: Tenable OT Security

Risk Information

VPR

Risk Factor: Low

Score: 1.4

CVSS v3

Risk Factor: Medium

Base Score: 5.3

Temporal Score: 4.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

Temporal Vector: CVSS:3.0/E:P/RL:O/RC:C

Vulnerability Information

CPE: cpe:/o:siemens:scalance_x204rna_%28hsr%29_firmware:3.2.7, cpe:/o:siemens:scalance_x204rna_eec_%28prp%29_firmware:3.2.7, cpe:/o:siemens:scalance_x204rna_eec_%28prp%2fhsr%29_firmware:3.2.7, cpe:/o:siemens:scalance_x204rna_%28prp%29_firmware:3.2.7, cpe:/o:siemens:scalance_x204rna_eec_%28hsr%29_firmware:3.2.7

Required KB Items: Tenable.ot/Siemens

Exploit Ease: No known exploits are available

Patch Publication Date: 12/13/2022

Vulnerability Publication Date: 12/13/2022

Reference Information

CVE: CVE-2017-3735

CWE: 119

ICSA: 22-349-21