Description
Improper Resource Shutdown or Release vulnerability in Mitsubishi Electric Corporation MELSEC iQ-R Series R00/01/02CPU Firmware versions "32" and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R04/08/16/32/120(EN)CPU Firmware versions "65" and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R08/16/32/120SFCPU Firmware versions "29" and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R08/16/32/120PSFCPU Firmware versions "08" and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R12CCPU-V Firmware versions "17" and prior, Mitsubishi Electric Corporation MELSEC iQ-L Series L04/08/16/32HCPU Firmware versions "05" and prior and Mitsubishi Electric Corporation MELIPC Series MI5122-VW Firmware versions "07" and prior allows a remote unauthenticated attacker to cause a Denial of Service condition in Ethernet communication on the module by sending specially crafted packets. A system reset of the module is required for recovery.
Published: 2022-12-23
Score: 7.5 High
EPSS: 2.0% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2022-36367 Improper Resource Shutdown or Release vulnerability in Mitsubishi Electric Corporation MELSEC iQ-R Series R00/01/02CPU Firmware versions "32" and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R04/08/16/32/120(EN)CPU Firmware versions "65" and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R08/16/32/120SFCPU Firmware versions "29" and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R08/16/32/120PSFCPU Firmware versions "08" and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R12CCPU-V Firmware versions "17" and prior, Mitsubishi Electric Corporation MELSEC iQ-L Series L04/08/16/32HCPU Firmware versions "05" and prior and Mitsubishi Electric Corporation MELIPC Series MI5122-VW Firmware versions "07" and prior allows a remote unauthenticated attacker to cause a Denial of Service condition in Ethernet communication on the module by sending specially crafted packets. A system reset of the module is required for recovery.
History

Thu, 05 Sep 2024 05:45:00 +0000

Type Values Removed Values Added
Description Improper Resource Shutdown or Release vulnerability in Mitsubishi Electric Corporation MELSEC iQ-R Series R00/01/02CPU Firmware versions "32" and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R04/08/16/32/120(EN)CPU Firmware versions "65" and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R08/16/32/120SFCPU Firmware versions "29" and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R12CCPU-V Firmware versions "17" and prior, Mitsubishi Electric Corporation MELSEC iQ-L Series L04/08/16/32HCPU Firmware versions "05" and prior and Mitsubishi Electric Corporation MELIPC Series MI5122-VW Firmware versions "07" and prior allows a remote unauthenticated attacker to cause a Denial of Service condition in Ethernet communication on the module by sending specially crafted packets. A system reset of the module is required for recovery. Improper Resource Shutdown or Release vulnerability in Mitsubishi Electric Corporation MELSEC iQ-R Series R00/01/02CPU Firmware versions "32" and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R04/08/16/32/120(EN)CPU Firmware versions "65" and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R08/16/32/120SFCPU Firmware versions "29" and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R08/16/32/120PSFCPU Firmware versions "08" and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R12CCPU-V Firmware versions "17" and prior, Mitsubishi Electric Corporation MELSEC iQ-L Series L04/08/16/32HCPU Firmware versions "05" and prior and Mitsubishi Electric Corporation MELIPC Series MI5122-VW Firmware versions "07" and prior allows a remote unauthenticated attacker to cause a Denial of Service condition in Ethernet communication on the module by sending specially crafted packets. A system reset of the module is required for recovery.

Subscriptions

Mitsubishi Melipc Mi5122-vw Melipc Mi5122-vw Firmware Melsec Iq-l L04 Hcpu Melsec Iq-l L04 Hcpu Firmware Melsec Iq-l L08 Hcpu Melsec Iq-l L08 Hcpu Firmware Melsec Iq-l L16 Hcpu Melsec Iq-l L16 Hcpu Firmware Melsec Iq-l L32 Hcpu Melsec Iq-l L32 Hcpu Firmware Melsec Iq-r R00 Cpu Melsec Iq-r R00 Cpu Firmware Melsec Iq-r R01 Cpu Melsec Iq-r R01 Cpu Firmware Melsec Iq-r R02 Cpu Melsec Iq-r R02 Cpu Firmware Melsec Iq-r R04 Cpu Melsec Iq-r R04 Cpu Firmware Melsec Iq-r R04 Sfcpu Melsec Iq-r R04 Sfcpu Firmware Melsec Iq-r R08 Cpu Melsec Iq-r R08 Cpu Firmware Melsec Iq-r R08 Sfcpu Melsec Iq-r R08 Sfcpu Firmware Melsec Iq-r R120 Cpu Melsec Iq-r R120 Cpu Firmware Melsec Iq-r R120 Sfcpu Melsec Iq-r R120 Sfcpu Firmware Melsec Iq-r R12 Ccpu-v Melsec Iq-r R12 Ccpu-v Firmware Melsec Iq-r R16 Cpu Melsec Iq-r R16 Cpu Firmware Melsec Iq-r R16 Sfcpu Melsec Iq-r R16 Sfcpu Firmware Melsec Iq-r R32 Cpu Melsec Iq-r R32 Cpu Firmware Melsec Iq-r R32 Sfcpu Melsec Iq-r R32 Sfcpu Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: Mitsubishi

Published:

Updated: 2024-09-05T05:25:44.061Z

Reserved: 2022-06-14T17:50:53.644Z

Link: CVE-2022-33324

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-12-23T03:15:08.723

Modified: 2024-11-21T07:08:11.880

Link: CVE-2022-33324

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses