PT-2023-1741 · B&R · B&R Aprol Tbase Server

CVE-2022-43762

·

Published

2023-02-08

·

Updated

2023-02-18

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions B&R APROL Tbase server versions prior to R 4.2-07
Description The issue is caused by a lack of verification in the B&R APROL Tbase server, which may lead to memory leaks when receiving messages. This can be exploited by a remote attacker to execute arbitrary code due to a buffer overflow operation.
Recommendations For versions prior to R 4.2-07, update to version R 4.2-07 or later to resolve the issue. As a temporary workaround, consider restricting access to the Tbase server to minimize the risk of exploitation.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2023-01334
CVE-2022-43762

Affected Products

B&R Aprol Tbase Server