PatchSiren

PatchSiren cyber security CVE debrief

CVE-2021-46665 Festo Didactic SE CVE debrief

CVE-2021-46665 is a denial-of-service issue tied in the advisory corpus to Festo Didactic SE MES PC systems that use a MariaDB component. The CVE description says MariaDB through 10.5.9 can crash in sql_parse.cc because of incorrect used_tables expectations. The supplied CVSS vector is local, low-privilege, and availability-focused, so the main concern is service disruption on affected MES PC hosts rather than data compromise.

Vendor
Festo Didactic SE
Product
MES PC
CVSS
MEDIUM 5.5
CISA KEV
Not listed in stored evidence
Original CVE published
2024-02-27
Original CVE updated
2026-01-27
Advisory published
2024-02-27
Advisory updated
2026-01-27

Who should care

OT/ICS operators, plant engineers, and system administrators responsible for Festo Didactic SE MES PC deployments should care most, especially where local user access to the host is shared or not tightly controlled. Security teams supporting industrial workstation images that include MariaDB/XAMPP-related components should also review exposure.

Technical summary

The advisory text links CVE-2021-46665 to a MariaDB application crash caused by incorrect used_tables expectations in sql_parse.cc, with MariaDB through 10.5.9 identified in the description. The supplied CVSS 3.1 vector is AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H, indicating a local attack path with high availability impact and no indicated confidentiality or integrity impact. The CISA CSAF source maps the issue to Festo Didactic SE MES PC and points to a replacement Factory Control Panel as the vendor remediation path.

Defensive priority

Medium. The vulnerability needs local access and low privileges, but it can still interrupt MES PC availability in an industrial setting. Prioritize it where the MES PC is operationally critical, shared by multiple users, or difficult to recover quickly after a crash.

Recommended defensive actions

  • Verify whether any Festo Didactic SE MES PC systems in your environment use the MariaDB/XAMPP-related component set referenced in the advisory.
  • Obtain and deploy the current Factory Control Panel version through Festo technical support, as cited in the remediation entry.
  • Restrict local and administrative access to affected hosts to reduce the chance of low-privilege misuse.
  • Test restart and recovery procedures for MES PC services so a crash does not create an extended outage.
  • Monitor affected systems for MariaDB or application crashes and preserve logs for incident triage.
  • Track the vendor and CISA advisory references for any further guidance or updated replacement guidance before the next maintenance window.

Evidence notes

Source evidence in the supplied corpus ties CVE-2021-46665 to Festo Didactic SE MES PC and states: “MariaDB through 10.5.9 allows a sql_parse.cc application crash because of incorrect used_tables expectations.” The provided CVSS vector is CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H, supporting a local denial-of-service interpretation. The remediation entry names Factory Control Panel as the replacement for XAMPP on MES PCs and instructs customers to contact Festo technical support for the current version. No exploit code or remote exploitation details are present in the supplied sources.

Sources and references

Verified primary and authoritative sources

  • CVE-2021-46665 CVE Program record

    Publisher, destination, and source semantics verified

    URL: https://www.cve.org/CVERecord?id=CVE-2021-46665

    CVE Program - Official CVE Program record with source-provided CVE metadata.

  • CVE-2021-46665 NVD vulnerability detail

    Publisher, destination, and source semantics verified

    URL: https://nvd.nist.gov/vuln/detail/CVE-2021-46665

    NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.

Supplemental references

  • Source item URL

    Unverified legacy reference

    URL: https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/OT/white/2026/icsa-26-027-02.json

    cisa_csaf

  • Source reference

    Unverified legacy reference

    URL: https://festo.csaf-tp.certvde.com/.well-known/csaf/white/2024/fsa-202402.json

    Reference

  • Source reference

    Unverified legacy reference

    URL: https://certvde.com/en/advisories/vendor/festo/

    Reference

  • Source reference

    Unverified legacy reference

    URL: https://festo.com/psirt

    Reference

  • Source reference

    Unverified legacy reference

    URL: https://certvde.com/en/advisories/VDE-2023-065

    Reference

  • Source reference

    Unverified legacy reference

    URL: https://www.cisa.gov/news-events/ics-advisories/icsa-26-027-02

    Reference

  • Source reference

    Unverified legacy reference

    URL: https://www.cisa.gov/news-events/ics-alerts/ics-alert-10-301-01

    Reference

  • Source reference

    Unverified legacy reference

    URL: https://www.cisa.gov/resources-tools/resources/ics-recommended-practices

    Reference

Methodology and review provenance

AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.