The vendor explicitly identifies these products as affected by this CVE.
- RUGGEDCOM RM1224
- SCALANCE M-800
- SCALANCE S615
- SCALANCE SC-600
- SCALANCE W1750D
- Summary
- Affected devices lack sufficient entropy in dnsmasq to handle multiple DNS query requests from the same resource name (RRNAME). This could allow a remote attacker to spoof DNS traffic, using a birthday attack (RFC 5452), than can lead to DNS cache poisoning.
- Remediation
- Update to V6.4 or later version
