CVE-2024-5659

Rockwell Automation was made aware of a vulnerability that causes all affected controllers on the same network to result in a major nonrecoverable fault(MNRF/Assert). This vulnerability could be exploited by sending abnormal packets to the mDNS port. If exploited, the availability of the device would be compromised.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:rockwellautomation:controllogix_5580_firmware:34.011:*:*:*:*:*:*:*
cpe:2.3:h:rockwellautomation:controllogix_5580:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:rockwellautomation:guardlogix_5580_firmware:34.011:*:*:*:*:*:*:*
cpe:2.3:h:rockwellautomation:guardlogix_5580:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:rockwellautomation:1756-en4_firmware:4.001:*:*:*:*:*:*:*
cpe:2.3:h:rockwellautomation:1756-en4:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:rockwellautomation:compactlogix_5380_firmware:34.011:*:*:*:*:*:*:*
cpe:2.3:h:rockwellautomation:compactlogix_5380:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:rockwellautomation:compact_guardlogix_5380_firmware:34.011:*:*:*:*:*:*:*
cpe:2.3:h:rockwellautomation:compact_guardlogix_5380:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:rockwellautomation:compactlogix_5480_firmware:34.011:*:*:*:*:*:*:*
cpe:2.3:h:rockwellautomation:compactlogix_5480:-:*:*:*:*:*:*:*

History

27 Feb 2025, 15:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5
CPE cpe:2.3:h:rockwellautomation:compact_guardlogix_5380:-:*:*:*:*:*:*:*
cpe:2.3:o:rockwellautomation:controllogix_5580_firmware:34.011:*:*:*:*:*:*:*
cpe:2.3:o:rockwellautomation:1756-en4_firmware:4.001:*:*:*:*:*:*:*
cpe:2.3:h:rockwellautomation:1756-en4:-:*:*:*:*:*:*:*
cpe:2.3:o:rockwellautomation:compactlogix_5380_firmware:34.011:*:*:*:*:*:*:*
cpe:2.3:o:rockwellautomation:compact_guardlogix_5380_firmware:34.011:*:*:*:*:*:*:*
cpe:2.3:h:rockwellautomation:guardlogix_5580:-:*:*:*:*:*:*:*
cpe:2.3:h:rockwellautomation:compactlogix_5380:-:*:*:*:*:*:*:*
cpe:2.3:o:rockwellautomation:compactlogix_5480_firmware:34.011:*:*:*:*:*:*:*
cpe:2.3:h:rockwellautomation:controllogix_5580:-:*:*:*:*:*:*:*
cpe:2.3:h:rockwellautomation:compactlogix_5480:-:*:*:*:*:*:*:*
cpe:2.3:o:rockwellautomation:guardlogix_5580_firmware:34.011:*:*:*:*:*:*:*
First Time Rockwellautomation compactlogix 5480 Firmware
Rockwellautomation compactlogix 5480
Rockwellautomation compact Guardlogix 5380 Firmware
Rockwellautomation guardlogix 5580
Rockwellautomation controllogix 5580 Firmware
Rockwellautomation guardlogix 5580 Firmware
Rockwellautomation
Rockwellautomation compact Guardlogix 5380
Rockwellautomation 1756-en4
Rockwellautomation compactlogix 5380
Rockwellautomation 1756-en4 Firmware
Rockwellautomation compactlogix 5380 Firmware
Rockwellautomation controllogix 5580
References () https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.SD1673.html - () https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.SD1673.html - Vendor Advisory

14 Jun 2024, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-14 17:15

Updated : 2025-03-03 19:37


NVD link : CVE-2024-5659

Mitre link : CVE-2024-5659


JSON object : View

Products Affected

rockwellautomation

  • compactlogix_5380
  • guardlogix_5580
  • compactlogix_5480_firmware
  • compact_guardlogix_5380
  • 1756-en4
  • compactlogix_5480
  • controllogix_5580
  • guardlogix_5580_firmware
  • compactlogix_5380_firmware
  • 1756-en4_firmware
  • controllogix_5580_firmware
  • compact_guardlogix_5380_firmware
CWE

No CWE.