CVE-2022-25622 is a vulnerability in Siemens Simit Simulation Platform
Published on April 12, 2022
The PROFINET (PNIO) stack, when integrated with the Interniche IP stack, improperly handles internal resources for TCP segments where the minimum TCP-Header length is less than defined. This could allow an attacker to create a denial of service condition for TCP services on affected devices by sending specially crafted TCP segments.
Weakness Type
What is a Resource Exhaustion Vulnerability?
The software does not properly control the allocation and maintenance of a limited resource, thereby enabling an actor to influence the amount of resources consumed, eventually leading to the exhaustion of available resources.
CVE-2022-25622 has been classified to as a Resource Exhaustion vulnerability or weakness.
Products Associated with CVE-2022-25622
Want to know whenever a new CVE is published for Siemens Simit Simulation Platform? stack.watch will email you.
Affected Versions
Siemens SIMATIC CFU DIQ:- Before V2.0.0 is affected.
- Before V2.0.0 is affected.
- Version All versions is affected.
- Version V4.2.0 and below * is affected.
- Version All versions < V3.2.19 is affected.
- Version All versions < V3.2.19 is affected.
- Version All versions < V3.2.19 is affected.
- Version All versions < V3.2.19 is affected.
- Version All versions < V3.2.19 is affected.
- Before * is affected.
- Version All versions is affected.
- Version V4.2.0 and below * is affected.
- Version V4.2.0 and below * is affected.
- Version V4.2.0 and below * is affected.
- Version V5.1.1 and below V5.1.2 is affected.
- Version V5.1.1 and below V5.1.2 is affected.
- Version V5.1.1 and below V5.1.2 is affected.
- Version V5.1.1 and below V5.1.2 is affected.
- Version V5.1.1 and below V5.1.2 is affected.
- Version V5.1.1 and below V5.1.2 is affected.
- Version V5.1.1 and below V5.1.3 is affected.
- Version V5.1.1 and below V5.1.2 is affected.
- Version V5.1.1 and below V5.1.2 is affected.
- Version All versions is affected.
- Version All versions >= 4.2 is affected.
- Version All versions < V2.0.0 is affected.
- Version All versions < V3.3.19 is affected.
- Version All versions < V3.2.19 is affected.
- Version All versions < V3.2.19 is affected.
- Version All versions < V3.2.19 is affected.
- Version All versions < V3.2.19 is affected.
- Version All versions < V3.2.19 is affected.
- Version All versions < V3.2.19 is affected.
- Version All versions < V3.2.19 is affected.
- Version All versions < V3.2.19 is affected.
- Version All versions < V3.2.19 is affected.
- Before * is affected.
- Before * is affected.
- Before * is affected.
- Before * is affected.
- Before * is affected.
- Before V6.0.10 is affected.
- Version All versions < V10.1.1 is affected.
- Before V8.2.3 is affected.
- Before V1.1.10 is affected.
- Before V1.2.1 is affected.
- Version All versions is affected.
- Version All versions is affected.
- Before V1.5 SP1 is affected.
- Before V4.7.14 is affected.
- Before V4.7.14 is affected.
- Before V4.7 SP14 is affected.
- Before V5.2.3.13 is affected.
- Before V5.2.3.13 is affected.
- Before * is affected.
- Before V5.2 SP3 HF13 is affected.
- Before V5.2.3.13 is affected.
- Before V5.2 SP3 HF18 is affected.
- Before V1.04.04 is affected.
- Version V4.2.0 and below * is affected.
- Version V4.2.0 and below * is affected.
- Version V4.2.0 and below * is affected.
- Version All versions < V3.2.19 is affected.
- Version All versions < V3.2.19 is affected.
- Version V4.2.0 and below * is affected.
- Version V4.2.0 and below * is affected.
- Version V4.2.0 and below * is affected.
- Version V4.2.0 and below * is affected.
- Version V4.2.0 and below * is affected.
- Version V4.2.0 and below * is affected.
- Version V4.2.0 and below * is affected.
- Version All versions is affected.
- Version All versions is affected.
- Version All versions is affected.
- Version All versions >= 4.2 is affected.
- Version All versions < V3.3.19 is affected.
- Version All versions < V3.2.19 is affected.
- Version All versions < V3.2.19 is affected.
- Version All versions < V3.2.19 is affected.
- Version All versions < V3.2.19 is affected.
- Before * is affected.
- Before * is affected.
Exploit Probability
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.