CVE-2011-3489
Rockwell RSLogix < 19 - Denial of Service via Crafted RNA Packet
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2011-3489. PoCs published by Luigi Auriemma.
AI-analyzed exploit summary This exploit targets a denial of service vulnerability in Rockwell RSLogix's RsvcHost.exe and RNADiagReceiver.exe services. The flaw is due to improper handling of a 32-bit size field in 'rna' packets, leading to a memset zero overflow and invalid read access.
Description
RnaUtility.dll in RsvcHost.exe 2.30.0.23 in Rockwell RSLogix 19 and earlier allows remote attackers to cause a denial of service (crash) via a crafted rna packet with a long string to TCP port 4446 that triggers (1) "a memset zero overflow" or (2) an out-of-bounds read, related to improper handling of a 32-bit size field.
Exploits (1)
This exploit targets a denial of service vulnerability in Rockwell RSLogix's RsvcHost.exe and RNADiagReceiver.exe services. The flaw is due to improper handling of a 32-bit size field in 'rna' packets, leading to a memset zero overflow and invalid read access.