CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

Rockwell Automation ControlLogix, CompactLogix, CompactLogix 5480, GuardLogix, Compact GuardLogix

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 5490

As cited

Copy frozen at (site build).

vulnerabilities

Rockwell Automation ControlLogix, CompactLogix, CompactLogix 5480, GuardLogix, Compact GuardLogix

Rockwell Automation released an advisory for a denial of service vulnerability (CVE-2021-42260) affecting ControlLogix, CompactLogix, CompactLogix 5480, GuardLogix, and Compact GuardLogix controllers. The vulnerability, triggered by maliciously crafted data, can cause a major nonrecoverable fault requiring a program download or reset to recover. Affected firmware versions are below 34.015, 35.014, 36.013, and 37.011 across multiple product lines deployed in critical manufacturing worldwide.

Why it matters: Organizations operating Rockwell Automation industrial control systems (ICS) in critical manufacturing must patch affected firmware versions immediately to prevent denial of service attacks that could disable critical production equipment.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

vulnerabilities

Rockwell Automation ControlLogix, CompactLogix, CompactLogix 5480, GuardLogix, Compact GuardLogix

Rockwell Automation released an advisory for a denial of service vulnerability (CVE-2021-42260) affecting ControlLogix, CompactLogix, CompactLogix 5480, GuardLogix, and Compact GuardLogix controllers. The vulnerability, triggered by maliciously crafted data, can cause a major nonrecoverable fault requiring a program download or reset to recover. Affected firmware versions are below 34.015, 35.014, 36.013, and 37.011 across multiple product lines deployed in critical manufacturing worldwide.

Why it matters: Organizations operating Rockwell Automation industrial control systems (ICS) in critical manufacturing must patch affected firmware versions immediately to prevent denial of service attacks that could disable critical production equipment.

Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary