CVE-2023-1424

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series CPU modules and MELSEC iQ-R Series CPU modules allows a remote unauthenticated attacker to cause a denial of service (DoS) condition or execute malicious code on a target product by sending specially crafted packets. A system reset of the product is required for recovery from a denial of service (DoS) condition and malicious code execution.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5u-32mr\/ds:-:*:*:*:*:*:*:*
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5u-32mr\/ds_firmware:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5u-32mr\/dss:-:*:*:*:*:*:*:*
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5u-32mr\/dss_firmware:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5u-32mr\/es:-:*:*:*:*:*:*:*
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5u-32mr\/es_firmware:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5u-32mr\/ess:-:*:*:*:*:*:*:*
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5u-32mr\/ess_firmware:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5u-32mt\/ds:-:*:*:*:*:*:*:*
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5u-32mt\/ds_firmware:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5u-32mt\/dss:-:*:*:*:*:*:*:*
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5u-32mt\/dss_firmware:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5u-32mt\/es:-:*:*:*:*:*:*:*
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5u-32mt\/es_firmware:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5u-32mt\/ess:-:*:*:*:*:*:*:*
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5u-32mt\/ess_firmware:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5u-64mr\/ds_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5u-64mr\/ds:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5u-64mr\/dss_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5u-64mr\/dss:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5u-64mr\/es_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5u-64mr\/es:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5u-64mr\/ess_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5u-64mr\/ess:-:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5u-64mt\/ds_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5u-64mt\/ds:-:*:*:*:*:*:*:*

Configuration 14 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5u-64mt\/dss_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5u-64mt\/dss:-:*:*:*:*:*:*:*

Configuration 15 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5u-64mt\/es_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5u-64mt\/es:-:*:*:*:*:*:*:*

Configuration 16 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5u-64mt\/ess_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5u-64mt\/ess:-:*:*:*:*:*:*:*

Configuration 17 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5u-80mr\/ds_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5u-80mr\/ds:-:*:*:*:*:*:*:*

Configuration 18 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5u-80mr\/dss_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5u-80mr\/dss:-:*:*:*:*:*:*:*

Configuration 19 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5u-80mr\/es_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5u-80mr\/es:-:*:*:*:*:*:*:*

Configuration 20 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5u-80mr\/ess_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5u-80mr\/ess:-:*:*:*:*:*:*:*

Configuration 21 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5u-80mt\/ds_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5u-80mt\/ds:-:*:*:*:*:*:*:*

Configuration 22 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5u-80mt\/dss_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5u-80mt\/dss:-:*:*:*:*:*:*:*

Configuration 23 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5u-80mt\/es_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5u-80mt\/es:-:*:*:*:*:*:*:*

Configuration 24 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5u-80mt\/ess_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5u-80mt\/ess:-:*:*:*:*:*:*:*

Configuration 25 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5uc-32mr\/dds_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5uc-32mr\/dds:-:*:*:*:*:*:*:*

Configuration 26 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5uc-32mr\/ds_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5uc-32mr\/ds:-:*:*:*:*:*:*:*

Configuration 27 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5uc-32mr\/ds-ts_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5uc-32mr\/ds-ts:-:*:*:*:*:*:*:*

Configuration 28 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5uc-32mt\/dds_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5uc-32mt\/dds:-:*:*:*:*:*:*:*

Configuration 29 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5uc-32mt\/ds_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5uc-32mt\/ds:-:*:*:*:*:*:*:*

Configuration 30 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5uc-32mt\/dss-ts_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5uc-32mt\/dss-ts:-:*:*:*:*:*:*:*

Configuration 31 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5uc-32mt\/ds-ts_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5uc-32mt\/ds-ts:-:*:*:*:*:*:*:*

Configuration 32 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5uc-64mr\/dds_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5uc-64mr\/dds:-:*:*:*:*:*:*:*

Configuration 33 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5uc-64mr\/ds_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5uc-64mr\/ds:-:*:*:*:*:*:*:*

Configuration 34 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5uc-64mt\/dds_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5uc-64mt\/dds:-:*:*:*:*:*:*:*

Configuration 35 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5uc-64mt\/ds_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5uc-64mt\/ds:-:*:*:*:*:*:*:*

Configuration 36 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5uc-96mr\/dds_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5uc-96mr\/dds:-:*:*:*:*:*:*:*

Configuration 37 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5uc-96mr\/ds_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5uc-96mr\/ds:-:*:*:*:*:*:*:*

Configuration 38 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5uc-96mt\/dds_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5uc-96mt\/dds:-:*:*:*:*:*:*:*

Configuration 39 (hide)

AND
cpe:2.3:o:mitsubishielectric:melsec_iq-fx5uc-96mt\/ds_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:melsec_iq-fx5uc-96mt\/ds:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2023-05-24 05:15

Updated : 2023-07-07 04:15


NVD link : CVE-2023-1424

Mitre link : CVE-2023-1424

CVE.ORG link : CVE-2023-1424


JSON object : View

Products Affected

mitsubishielectric

  • melsec_iq-fx5uc-64mr\/ds_firmware
  • melsec_iq-fx5uc-64mt\/ds
  • melsec_iq-fx5uc-32mt\/ds-ts
  • melsec_iq-fx5uc-32mt\/dds_firmware
  • melsec_iq-fx5u-32mr\/ess_firmware
  • melsec_iq-fx5u-80mt\/dss
  • melsec_iq-fx5uc-32mr\/dds_firmware
  • melsec_iq-fx5u-80mt\/ds
  • melsec_iq-fx5uc-64mt\/dds_firmware
  • melsec_iq-fx5u-80mr\/ess
  • melsec_iq-fx5uc-32mt\/ds_firmware
  • melsec_iq-fx5uc-32mr\/ds
  • melsec_iq-fx5u-80mt\/es
  • melsec_iq-fx5uc-32mt\/ds-ts_firmware
  • melsec_iq-fx5u-80mt\/ess
  • melsec_iq-fx5u-80mr\/es_firmware
  • melsec_iq-fx5uc-96mt\/dds
  • melsec_iq-fx5u-64mt\/es_firmware
  • melsec_iq-fx5uc-32mt\/dds
  • melsec_iq-fx5uc-96mr\/dds_firmware
  • melsec_iq-fx5u-80mt\/ess_firmware
  • melsec_iq-fx5uc-64mr\/dds_firmware
  • melsec_iq-fx5u-32mr\/ds_firmware
  • melsec_iq-fx5u-32mr\/es_firmware
  • melsec_iq-fx5u-32mt\/dss
  • melsec_iq-fx5uc-32mt\/dss-ts
  • melsec_iq-fx5u-32mr\/es
  • melsec_iq-fx5u-64mr\/ess
  • melsec_iq-fx5u-64mr\/dss_firmware
  • melsec_iq-fx5uc-64mr\/ds
  • melsec_iq-fx5u-32mt\/ess_firmware
  • melsec_iq-fx5u-32mt\/es
  • melsec_iq-fx5u-80mr\/dss_firmware
  • melsec_iq-fx5u-80mr\/ess_firmware
  • melsec_iq-fx5u-32mt\/dss_firmware
  • melsec_iq-fx5u-64mr\/ds_firmware
  • melsec_iq-fx5uc-32mr\/ds-ts
  • melsec_iq-fx5uc-96mr\/ds_firmware
  • melsec_iq-fx5u-32mr\/dss_firmware
  • melsec_iq-fx5uc-32mr\/ds-ts_firmware
  • melsec_iq-fx5u-64mr\/es
  • melsec_iq-fx5uc-96mt\/ds
  • melsec_iq-fx5uc-96mr\/ds
  • melsec_iq-fx5u-64mt\/dss
  • melsec_iq-fx5u-80mr\/es
  • melsec_iq-fx5uc-32mr\/ds_firmware
  • melsec_iq-fx5u-80mr\/ds_firmware
  • melsec_iq-fx5u-64mr\/dss
  • melsec_iq-fx5u-32mt\/es_firmware
  • melsec_iq-fx5u-80mt\/dss_firmware
  • melsec_iq-fx5uc-64mt\/dds
  • melsec_iq-fx5u-32mt\/ds_firmware
  • melsec_iq-fx5uc-64mr\/dds
  • melsec_iq-fx5uc-96mr\/dds
  • melsec_iq-fx5u-64mt\/ess_firmware
  • melsec_iq-fx5u-80mt\/ds_firmware
  • melsec_iq-fx5u-32mt\/ds
  • melsec_iq-fx5u-64mt\/ds
  • melsec_iq-fx5u-80mr\/ds
  • melsec_iq-fx5u-80mr\/dss
  • melsec_iq-fx5uc-32mt\/ds
  • melsec_iq-fx5u-32mr\/dss
  • melsec_iq-fx5u-64mr\/ess_firmware
  • melsec_iq-fx5u-64mt\/ds_firmware
  • melsec_iq-fx5u-32mr\/ds
  • melsec_iq-fx5u-64mt\/ess
  • melsec_iq-fx5uc-96mt\/ds_firmware
  • melsec_iq-fx5u-80mt\/es_firmware
  • melsec_iq-fx5u-64mt\/dss_firmware
  • melsec_iq-fx5uc-32mr\/dds
  • melsec_iq-fx5u-64mt\/es
  • melsec_iq-fx5u-32mt\/ess
  • melsec_iq-fx5uc-96mt\/dds_firmware
  • melsec_iq-fx5u-64mr\/es_firmware
  • melsec_iq-fx5u-32mr\/ess
  • melsec_iq-fx5uc-64mt\/ds_firmware
  • melsec_iq-fx5u-64mr\/ds
  • melsec_iq-fx5uc-32mt\/dss-ts_firmware
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')