SkipNavigation
US-CERT
American Flag
  Vulnerability
Notes
Database

Search Vulnerability Notes

Vulnerability Notes Help Information


 
 View Notes By
  Name

ID Number

CVE Name

Date Public

Date Published

Date Updated

Severity Metric



 Other Documents
  Technical Alerts

Technical Bulletins

Alerts

Security Tips

 

Vulnerability Note VU#476345

Citect CitectSCADA buffer overflow

Overview

Citect CitectSCADA contains a remotely accessible buffer overflow vulnerability which may allow a remote attacker to execute arbitrary code.

I. Description

Citect CitectSCADA is software used for monitoring and control in Supervisory Control And Data Acquisition (SCADA) systems. A buffer overflow vulnerability exists in a CitectSCADA process that listens on the network (20222/tcp) for service requests from clients. An attacker could exploit this vulnerability by sending specially crafted packets to a vulnerable CitectSCADA system.

Note that this vulnerability affects versions of Citect CitectSCADA and CitectFacilities.

II. Impact

A remote, unauthenticated attacker may be able to execute arbitrary code or cause a denial of service.

III. Solution

Apply a patch

Supported Citect customers should contact Citect to receive a patch. For more information on contacting Citect visit http://www.citect.com/index.php?option=com_content&task=view&id=26&Itemid=29.

Restrict access

Restricting access to a vulnerable system by using host or network based firewalls may prevent a remote attacker from exploiting this vulnerability. For more information refer to Citect security article Securing Your SCADA Network.

Systems Affected

VendorStatusDate Updated
CitectVulnerable18-Jul-2008

References


http://www.citect.com/index.php?option=com_content&task=view&id=186&Itemid=322
http://www.citect.com/index.php?option=com_content&task=view&id=26&Itemid=29
http://www.citect.com/documents/news_and_media/pr-citect-address-security.pdf
http://www.coresecurity.com/index.php5?module=ContentMod&action=item&id=2186
http://secunia.com/advisories/30638/
http://www.securityfocus.com/bid/29634/discuss

Credit

Thanks to Ivan Arce at Core Securities for information that was used in this report.

This document was written by Chris Taschner.

Other Information

Date Public07/11/2008
Date First Published06/11/2008 12:55:41 PM
Date Last Updated07/18/2008
CERT Advisory 
CVE-ID(s)CVE-2008-2639
NVD-ID(s)CVE-2008-2639
US-CERT Technical Alerts 
Metric3.57
Document Revision14

If you have feedback, comments, or additional information about this vulnerability, please send us email.
 

 
Page Corner Image
Produced 2008 by US-CERT, a government organization
Disclaimers and copyright information
Get Adobe Reader Get Adobe Reader