CVE-2014-9206

Schneider Electric Invensys - Buffer Overflow

Title source: llm
STIX 2.1

Description

Stack-based buffer overflow in Device Type Manager (DTM) 3.1.6 and earlier for Schneider Electric Invensys SRD Control Valve Positioner devices 960 and 991 allows local users to gain privileges via a malformed DLL file.

References (2)

Core 2
Core References
Third Party Advisory, US Government Resource x_refsource_misc
https://ics-cert.us-cert.gov/advisories/ICSA-15-055-03

Scores

EPSS 0.0005
EPSS Percentile 14.5%

Details

CWE
CWE-119
Status published
Products (1)
schneider-electric/device_type_manager < 3.1.6
Published Mar 14, 2015
Tracked Since Feb 18, 2026