Rewterz
Rewterz Threat Advisory – Multiple Microsoft Security Updates
May 13, 2020
Rewterz
Rewterz Threat Alert – Staff Members’ Inbox Positive for Coronavirus Themed Phishing Campaign
May 13, 2020

Rewterz Threat Advisory – ICS: Siemens RUGGEDCOM, SCALANCE, SIMATIC, SINEMA

Severity

Medium

Analysis Summary

CVE-2018-5390 

Certain Linux kernel versions can be forced to make resource intensive calls for every incoming packet, which can lead to a denial-of-service condition.

CVE-2018-5391 

Certain Linux kernels are vulnerable to a denial-of-service attack with low rates of specially modified packets targeting IP fragment re-assembly. An attacker may cause a denial-of-service condition by sending specially crafted IP fragments.

Affected Vendors

Siemens

Affected Products

  • RUGGEDCOM
  • SCALANCE
  • SIMATIC
  • SINEMA

Remediation

Refer to vendor’s advisory for the list of affected products and upgraded patches.

https://www.us-cert.gov/ics/advisories/icsa-20-105-05