Siemens

Simatic S7-1500 Cpu 1518-4 Pn/dp Mfp

66 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 0.11%
  • Veröffentlicht 29.07.2026 16:47:17
  • Zuletzt bearbeitet 08.09.2026 09:18:20

In the Linux kernel, the following vulnerability has been resolved: posix-cpu-timers: Prevent UAF caused by non-leader exec() race Wongi and Jungwoo decoded and reported a non-leader exec() related race which can result in an UAF: sys_timer_delet...

  • EPSS 0.17%
  • Veröffentlicht 27.07.2026 20:10:40
  • Zuletzt bearbeitet 08.09.2026 09:18:20

In the Linux kernel, the following vulnerability has been resolved: virtio-net: fix len check in receive_big() receive_big() bounds the device-announced length by (big_packets_num_skbfrags + 1) * PAGE_SIZE. That is still too loose: add_recvbuf_big...

  • EPSS 0.17%
  • Veröffentlicht 27.07.2026 20:10:36
  • Zuletzt bearbeitet 08.09.2026 09:18:20

In the Linux kernel, the following vulnerability has been resolved: net, bpf: check master for NULL in xdp_master_redirect() xdp_master_redirect() dereferences the result of netdev_master_upper_dev_get_rcu() without a NULL check, but that helper re...

  • EPSS 0.18%
  • Veröffentlicht 27.07.2026 20:10:32
  • Zuletzt bearbeitet 08.09.2026 09:18:19

In the Linux kernel, the following vulnerability has been resolved: ipv6: Fix null-ptr-deref in fib6_nh_mtu_change(). fib6_nh_mtu_change() re-fetches idev via __in6_dev_get(arg->dev) and dereferences idev->cnf.mtu6 without a NULL check. addrconf_if...

  • EPSS 0.18%
  • Veröffentlicht 25.07.2026 08:50:26
  • Zuletzt bearbeitet 08.09.2026 14:31:06

In the Linux kernel, the following vulnerability has been resolved: proc: protect ptrace_may_access() with exec_update_lock (FD links) proc_pid_get_link() and proc_pid_readlink() currently look up the task from the pid once, then do the ptrace acce...

  • EPSS 0.18%
  • Veröffentlicht 25.07.2026 08:50:23
  • Zuletzt bearbeitet 08.09.2026 15:23:41

In the Linux kernel, the following vulnerability has been resolved: proc: protect ptrace_may_access() with exec_update_lock (part 1) Fix the easy cases where procfs currently calls ptrace_may_access() without exec_update_lock protection, where the ...

  • EPSS 0.18%
  • Veröffentlicht 25.07.2026 08:50:23
  • Zuletzt bearbeitet 08.09.2026 15:23:56

In the Linux kernel, the following vulnerability has been resolved: posix-cpu-timers: Fix pid refcount leak in do_cpu_nanosleep() error path In do_cpu_nanosleep(), posix_cpu_timer_create() takes a pid reference via get_pid() and stores it in timer....

  • EPSS 0.18%
  • Veröffentlicht 19.07.2026 12:02:12
  • Zuletzt bearbeitet 08.09.2026 09:18:17

In the Linux kernel, the following vulnerability has been resolved: block: Avoid mounting the bdev pseudo-filesystem in userspace The bdev pseudo-filesystem is an internal kernel filesystem with which userspace should not interfere. Unregister it s...

  • EPSS 0.28%
  • Veröffentlicht 12.05.2026 08:21:10
  • Zuletzt bearbeitet 14.07.2026 10:16:32

Affected devices do not properly validate and sanitize filenames on the Firmware Update page. This could allow a remote attacker to social engineer the user into selecting the modified firmware file to be uploaded. This would result in malitcious Ja...

  • EPSS 0.37%
  • Veröffentlicht 12.05.2026 08:21:06
  • Zuletzt bearbeitet 14.07.2026 10:16:31

Affected devices do not properly validate and sanitize Technology Object (TO) name rendered on the "Motion Control Diagnostics" page of the web interface. This could allow an authenticated attacker who is authorized to download a TIA project into the...