PatchSiren cyber security CVE debrief
CVE-2023-39192 Siemens CVE debrief
CVE-2023-39192 is a Linux kernel Netfilter flaw in the xt_u32 module that can let a local privileged attacker trigger an out-of-bounds read, which may result in a crash or information disclosure. In Siemens’ advisory for SCALANCE W700 IEEE 802.11ax, the issue affects 19 SCALANCE wireless products and is addressed by updating to V3.0.0 or later. CISA published the advisory on 2025-02-11 and later revised it on 2025-05-06 for typo fixes only.
- Vendor
- Siemens
- Product
- SCALANCE WAB762-1 (6GK5762-1AJ00-6AA0)
- CVSS
- MEDIUM 6.7
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2023-06-13
- Original CVE updated
- 2024-04-09
- Advisory published
- 2023-06-13
- Advisory updated
- 2024-04-09
Who should care
Operators, integrators, and maintainers of the affected Siemens SCALANCE WAB/WAM/WUB/WUM devices should care, especially environments that rely on Linux-based device software and have privileged local access paths. OT teams should prioritize this if any affected product is deployed in production networks or remote management workflows.
Technical summary
The vulnerability is an out-of-bounds read in the Linux kernel Netfilter xt_u32 module caused by insufficient validation of fields in the xt_u32 structure. According to the advisory, a local privileged attacker can set size fields beyond array boundaries, which can crash the device or expose information. The reported CVSS v3.1 vector is AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L, matching a medium-severity issue with elevated privileges required.
Defensive priority
Medium. The exploitability is limited by the local privileged prerequisite, but the impact can include information disclosure and service disruption in OT devices. Prioritize remediation during the next maintenance window for exposed or production SCALANCE systems.
Recommended defensive actions
- Upgrade affected Siemens SCALANCE products to V3.0.0 or later, per the vendor remediation guidance.
- Identify all deployed instances of the 19 affected SCALANCE product variants listed in the advisory and confirm firmware/software versions.
- Limit privileged local access on affected devices and review administrative account exposure until patching is complete.
- Validate the remediation against Siemens’ advisory and maintenance guidance before deploying in production OT environments.
- Use defense-in-depth and ICS hardening practices from CISA while remediation is planned.
Evidence notes
Source material identifies CVE-2023-39192 as a Linux kernel Netfilter xt_u32 validation flaw causing out-of-bounds read, crash, or information disclosure. Siemens’ advisory covers 19 SCALANCE product variants and recommends updating to V3.0.0 or later. The CISA CSAF source was published on 2025-02-11 and revised on 2025-05-06 with revision history stating the update fixed typos. No KEV entry or ransomware linkage was provided in the supplied corpus.
Sources and references
Verified primary and authoritative sources
-
CVE-2023-39192 CVE Program record
Publisher, destination, and source semantics verified
URL: https://www.cve.org/CVERecord?id=CVE-2023-39192
CVE Program - Official CVE Program record with source-provided CVE metadata.
-
CVE-2023-39192 NVD vulnerability detail
Publisher, destination, and source semantics verified
URL: https://nvd.nist.gov/vuln/detail/CVE-2023-39192
NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.
Supplemental references
-
Source item URL
Unverified legacy reference
URL: https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/OT/white/2025/icsa-25-044-09.json
cisa_csaf
-
Source reference
Unverified legacy reference
URL: https://cert-portal.siemens.com/productcert/csaf/ssa-769027.json
Reference
-
Source reference
Unverified legacy reference
URL: https://cert-portal.siemens.com/productcert/html/ssa-769027.html
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/news-events/ics-advisories/icsa-25-044-09
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/uscert/ics/alerts/ICS-ALERT-10-301-01
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/resources-tools/resources/ics-recommended-practices
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/topics/industrial-control-systems
Reference
-
Source reference
Unverified legacy reference
URL: https://us-cert.cisa.gov/sites/default/files/recommended_practices/NCCIC_ICS-CERT_Defense_in_Depth_2016_S508C.pdf
Reference
Methodology and review provenance
AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.