PatchSiren

PatchSiren cyber security CVE debrief

CVE-2023-29469 Siemens CVE debrief

CVE-2023-29469 is a libxml2 vulnerability that Siemens mapped to multiple SCALANCE W700 products in its advisory. A crafted XML document can trigger nondeterministic hash behavior when empty dictionary strings are processed, which can lead to logic failures and memory errors such as a double free. Siemens’ advisory identifies 19 affected SCALANCE models and directs customers to update to V3.0.0 or later. For OT and network teams, this is primarily a stability and availability issue, but memory corruption also raises security concern in any environment that parses untrusted XML.

Vendor
Siemens
Product
SCALANCE WAB762-1 (6GK5762-1AJ00-6AA0)
CVSS
MEDIUM 6.5
CISA KEV
Not listed in stored evidence
Original CVE published
2025-02-11
Original CVE updated
2025-05-06
Advisory published
2025-02-11
Advisory updated
2025-05-06

Who should care

Siemens SCALANCE WAB/WAM/WUB/WUM operators, OT/ICS administrators, network security teams supporting industrial wireless infrastructure, and vulnerability management teams responsible for embedded Linux or XML-parsing components in deployed appliances.

Technical summary

The underlying issue is in libxml2 before 2.10.4. When xmlDictComputeFastKey in dict.c hashes empty dict strings from a crafted XML document, it can use the first byte of an empty string in a way that is not deterministic, producing arbitrary values instead of only '\0'. Siemens’ CSAF advisory ties this upstream flaw to multiple SCALANCE W700 device models. The stated impact is logic and memory errors, including double free, and the supplied CVSS vector indicates network attack vector, low attack complexity, no privileges required, user interaction required, and high availability impact.

Defensive priority

Medium

Recommended defensive actions

  • Update affected Siemens SCALANCE products to V3.0.0 or later as directed in the Siemens advisory.
  • Inventory the listed SCALANCE models to confirm whether any affected product IDs are deployed.
  • Prioritize remediation for systems that process XML from external or semi-trusted sources.
  • Validate firmware/software versions after maintenance to confirm the fixed release is installed.
  • Monitor affected devices for crashes, restarts, or other instability that could indicate exposure to the flaw.
  • Use Siemens and CISA industrial control system hardening guidance to reduce exposure while remediation is planned.

Evidence notes

The supplied Siemens CSAF advisory and CISA source item both describe the libxml2 issue, the affected SCALANCE product list, and the remediation to update to V3.0.0 or later. The source corpus does not indicate KEV listing or ransomware association. Timing in this brief follows the supplied CVE/source publication date of 2025-02-11 and revision date of 2025-05-06; these are advisory dates, not the original upstream bug date.

Sources and references

Verified primary and authoritative sources

  • CVE-2023-29469 CVE Program record

    Publisher, destination, and source semantics verified

    URL: https://www.cve.org/CVERecord?id=CVE-2023-29469

    CVE Program - Official CVE Program record with source-provided CVE metadata.

  • CVE-2023-29469 NVD vulnerability detail

    Publisher, destination, and source semantics verified

    URL: https://nvd.nist.gov/vuln/detail/CVE-2023-29469

    NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.

Supplemental references

  • Source item URL

    Unverified legacy reference

    URL: https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/OT/white/2025/icsa-25-044-09.json

    cisa_csaf

  • Source reference

    Unverified legacy reference

    URL: https://cert-portal.siemens.com/productcert/csaf/ssa-769027.json

    Reference

  • Source reference

    Unverified legacy reference

    URL: https://cert-portal.siemens.com/productcert/html/ssa-769027.html

    Reference

  • Source reference

    Unverified legacy reference

    URL: https://www.cisa.gov/news-events/ics-advisories/icsa-25-044-09

    Reference

  • Source reference

    Unverified legacy reference

    URL: https://www.cisa.gov/uscert/ics/alerts/ICS-ALERT-10-301-01

    Reference

  • Source reference

    Unverified legacy reference

    URL: https://www.cisa.gov/resources-tools/resources/ics-recommended-practices

    Reference

  • Source reference

    Unverified legacy reference

    URL: https://www.cisa.gov/topics/industrial-control-systems

    Reference

  • Source reference

    Unverified legacy reference

    URL: https://us-cert.cisa.gov/sites/default/files/recommended_practices/NCCIC_ICS-CERT_Defense_in_Depth_2016_S508C.pdf

    Reference

Methodology and review provenance

AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.