The vendor explicitly identifies these products as affected by this CVE.
- SIMATIC MV540 H (6GF3540-0GE10)
- SIMATIC MV540 S (6GF3540-0CD10)
- SIMATIC MV550 H (6GF3550-0GE10)
- SIMATIC MV550 S (6GF3550-0CD10)
- SIMATIC MV560 U (6GF3560-0LE10)
- SIMATIC MV560 X (6GF3560-0HE10)
- Summary
- nfs_lookup_reply in net/nfs.c in Das U-Boot through 2022.04 (and through 2022.07-rc2) has an unbounded memcpy with a failed length check, leading to a buffer overflow. NOTE: this issue exists because of an incorrect fix for CVE-2019-14196.
- Remediation
- Update to V3.3.4 or later version
