Stack Buffer Overflow Vulnerability in WAGO PFC 200 Firmware
CVE-2019-5176
5.5MEDIUM
What is CVE-2019-5176?
A stack buffer overflow vulnerability exists in the iocheckd service's 'I/O-Check' functionality of WAGO PFC 200 Firmware version 03.02.02(14). This vulnerability allows an attacker to send specially crafted packets that overflow the destination buffer during the parsing of cache files. When a gateway value exceeds a specific length, it exceeds the buffer limit, leading to service crashes. The improper handling of these values can be exploited, affecting the stability and security of the device.
Affected Version(s)
WAGO PFC200 Firmware version 03.02.02(14)