Home

Description

Server receiving a malformed message creates connection for a hostname that may cause a stack overflow resulting in possible remote code execution. See Honeywell Security Notification for recommendations on upgrading and versioning.

PUBLISHED Reserved 2023-10-04 | Published 2024-04-17 | Updated 2024-08-02 | Assigner Honeywell




HIGH: 7.4CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:H

Problem types

CWE-805

Product status

Default status
unaffected

520.2 (semver)
affected

510.1 (semver)
affected

520.1 (semver)
affected

511.1 (semver)
affected

Default status
unaffected

520.2 (semver)
affected

511.1 (semver)
affected

520.1 (semver)
affected

Default status
unaffected

520.2 (semver)
affected

520.1 (semver)
affected

520.2 TCU4 HFR2 (semver)
affected

References

process.honeywell.com

process.honeywell.com

cve.org (CVE-2023-5396)

nvd.nist.gov (CVE-2023-5396)

Download JSON