Treck TCP/IP Ripple 20 Vulnerabilities Affecting Schneider Devices
Issue:
What Schneider Electric devices were affected by the Treck Inc. Ripple20 cyber vulnerabilities?
Product:
Schneider Electric Devices
Environment:
Cybersecurity
Cause:
Treck Inc. publicly disclosed 19 vulnerabilities in its embedded TCP/IP stack, collectively known as Ripple20.
These vulnerabilities vary in severity, with several capable of enabling remote code execution. Other possible impacts include:
- Privilege escalation
- Denial of service
- Information leakage
These issues arise from flaws such as improper length handling, improper input validation, out‑of‑bounds read/write, integer overflows, double free, and others, as identified in federal advisories.
Resolution:
A list of Schneider Electric devices affected by the Ripple20 vulnerabilities is available in theattached document found under the Related tab.
Recommendation:
If you are using an older version of PME, consider upgrading to the latest version for improved protocol support and security. For assistance with integration or upgrades, contact Schneider Electric Technical Support at: pmo-psup@se.com
發佈於: 施耐德電機Taiwan


需要協助?
產品選型工具
快速輕鬆地為您的應用找到合適的產品和附件。
取得報價
立即線上提交您的銷售需求,專業團隊將主動聯繫您。
購買地點
輕鬆在您所在地區找到最近的施耐德電機經銷商。
支援中心
在同一位置找到滿足您所有需求的支援資源。