PatchSiren cyber security CVE debrief
CVE-2023-29469 Siemens CVE debrief
CVE-2023-29469 is a libxml2 vulnerability that Siemens mapped to multiple SCALANCE W700 products in its advisory. A crafted XML document can trigger nondeterministic hash behavior when empty dictionary strings are processed, which can lead to logic failures and memory errors such as a double free. Siemens’ advisory identifies 19 affected SCALANCE models and directs customers to update to V3.0.0 or later. For OT and network teams, this is primarily a stability and availability issue, but memory corruption also raises security concern in any environment that parses untrusted XML.
- Vendor
- Siemens
- Product
- SCALANCE WAB762-1 (6GK5762-1AJ00-6AA0)
- CVSS
- MEDIUM 6.5
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2025-02-11
- Original CVE updated
- 2025-05-06
- Advisory published
- 2025-02-11
- Advisory updated
- 2025-05-06
Who should care
Siemens SCALANCE WAB/WAM/WUB/WUM operators, OT/ICS administrators, network security teams supporting industrial wireless infrastructure, and vulnerability management teams responsible for embedded Linux or XML-parsing components in deployed appliances.
Technical summary
The underlying issue is in libxml2 before 2.10.4. When xmlDictComputeFastKey in dict.c hashes empty dict strings from a crafted XML document, it can use the first byte of an empty string in a way that is not deterministic, producing arbitrary values instead of only '\0'. Siemens’ CSAF advisory ties this upstream flaw to multiple SCALANCE W700 device models. The stated impact is logic and memory errors, including double free, and the supplied CVSS vector indicates network attack vector, low attack complexity, no privileges required, user interaction required, and high availability impact.
Defensive priority
Medium
Recommended defensive actions
- Update affected Siemens SCALANCE products to V3.0.0 or later as directed in the Siemens advisory.
- Inventory the listed SCALANCE models to confirm whether any affected product IDs are deployed.
- Prioritize remediation for systems that process XML from external or semi-trusted sources.
- Validate firmware/software versions after maintenance to confirm the fixed release is installed.
- Monitor affected devices for crashes, restarts, or other instability that could indicate exposure to the flaw.
- Use Siemens and CISA industrial control system hardening guidance to reduce exposure while remediation is planned.
Evidence notes
The supplied Siemens CSAF advisory and CISA source item both describe the libxml2 issue, the affected SCALANCE product list, and the remediation to update to V3.0.0 or later. The source corpus does not indicate KEV listing or ransomware association. Timing in this brief follows the supplied CVE/source publication date of 2025-02-11 and revision date of 2025-05-06; these are advisory dates, not the original upstream bug date.
Sources and references
Verified primary and authoritative sources
-
CVE-2023-29469 CVE Program record
Publisher, destination, and source semantics verified
URL: https://www.cve.org/CVERecord?id=CVE-2023-29469
CVE Program - Official CVE Program record with source-provided CVE metadata.
-
CVE-2023-29469 NVD vulnerability detail
Publisher, destination, and source semantics verified
URL: https://nvd.nist.gov/vuln/detail/CVE-2023-29469
NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.
Supplemental references
-
Source item URL
Unverified legacy reference
URL: https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/OT/white/2025/icsa-25-044-09.json
cisa_csaf
-
Source reference
Unverified legacy reference
URL: https://cert-portal.siemens.com/productcert/csaf/ssa-769027.json
Reference
-
Source reference
Unverified legacy reference
URL: https://cert-portal.siemens.com/productcert/html/ssa-769027.html
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/news-events/ics-advisories/icsa-25-044-09
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/uscert/ics/alerts/ICS-ALERT-10-301-01
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/resources-tools/resources/ics-recommended-practices
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/topics/industrial-control-systems
Reference
-
Source reference
Unverified legacy reference
URL: https://us-cert.cisa.gov/sites/default/files/recommended_practices/NCCIC_ICS-CERT_Defense_in_Depth_2016_S508C.pdf
Reference
Methodology and review provenance
AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.