PatchSiren

PatchSiren cyber security CVE debrief

CVE-2023-39192 Siemens CVE debrief

CVE-2023-39192 is a Linux kernel Netfilter flaw in the xt_u32 module that can let a local privileged attacker trigger an out-of-bounds read, which may result in a crash or information disclosure. In Siemens’ advisory for SCALANCE W700 IEEE 802.11ax, the issue affects 19 SCALANCE wireless products and is addressed by updating to V3.0.0 or later. CISA published the advisory on 2025-02-11 and later revised it on 2025-05-06 for typo fixes only.

Vendor
Siemens
Product
SCALANCE WAB762-1 (6GK5762-1AJ00-6AA0)
CVSS
MEDIUM 6.7
CISA KEV
Not listed in stored evidence
Original CVE published
2023-06-13
Original CVE updated
2024-04-09
Advisory published
2023-06-13
Advisory updated
2024-04-09

Who should care

Operators, integrators, and maintainers of the affected Siemens SCALANCE WAB/WAM/WUB/WUM devices should care, especially environments that rely on Linux-based device software and have privileged local access paths. OT teams should prioritize this if any affected product is deployed in production networks or remote management workflows.

Technical summary

The vulnerability is an out-of-bounds read in the Linux kernel Netfilter xt_u32 module caused by insufficient validation of fields in the xt_u32 structure. According to the advisory, a local privileged attacker can set size fields beyond array boundaries, which can crash the device or expose information. The reported CVSS v3.1 vector is AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L, matching a medium-severity issue with elevated privileges required.

Defensive priority

Medium. The exploitability is limited by the local privileged prerequisite, but the impact can include information disclosure and service disruption in OT devices. Prioritize remediation during the next maintenance window for exposed or production SCALANCE systems.

Recommended defensive actions

  • Upgrade affected Siemens SCALANCE products to V3.0.0 or later, per the vendor remediation guidance.
  • Identify all deployed instances of the 19 affected SCALANCE product variants listed in the advisory and confirm firmware/software versions.
  • Limit privileged local access on affected devices and review administrative account exposure until patching is complete.
  • Validate the remediation against Siemens’ advisory and maintenance guidance before deploying in production OT environments.
  • Use defense-in-depth and ICS hardening practices from CISA while remediation is planned.

Evidence notes

Source material identifies CVE-2023-39192 as a Linux kernel Netfilter xt_u32 validation flaw causing out-of-bounds read, crash, or information disclosure. Siemens’ advisory covers 19 SCALANCE product variants and recommends updating to V3.0.0 or later. The CISA CSAF source was published on 2025-02-11 and revised on 2025-05-06 with revision history stating the update fixed typos. No KEV entry or ransomware linkage was provided in the supplied corpus.

Sources and references

Verified primary and authoritative sources

  • CVE-2023-39192 CVE Program record

    Publisher, destination, and source semantics verified

    URL: https://www.cve.org/CVERecord?id=CVE-2023-39192

    CVE Program - Official CVE Program record with source-provided CVE metadata.

  • CVE-2023-39192 NVD vulnerability detail

    Publisher, destination, and source semantics verified

    URL: https://nvd.nist.gov/vuln/detail/CVE-2023-39192

    NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.

Supplemental references

  • Source item URL

    Unverified legacy reference

    URL: https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/OT/white/2025/icsa-25-044-09.json

    cisa_csaf

  • Source reference

    Unverified legacy reference

    URL: https://cert-portal.siemens.com/productcert/csaf/ssa-769027.json

    Reference

  • Source reference

    Unverified legacy reference

    URL: https://cert-portal.siemens.com/productcert/html/ssa-769027.html

    Reference

  • Source reference

    Unverified legacy reference

    URL: https://www.cisa.gov/news-events/ics-advisories/icsa-25-044-09

    Reference

  • Source reference

    Unverified legacy reference

    URL: https://www.cisa.gov/uscert/ics/alerts/ICS-ALERT-10-301-01

    Reference

  • Source reference

    Unverified legacy reference

    URL: https://www.cisa.gov/resources-tools/resources/ics-recommended-practices

    Reference

  • Source reference

    Unverified legacy reference

    URL: https://www.cisa.gov/topics/industrial-control-systems

    Reference

  • Source reference

    Unverified legacy reference

    URL: https://us-cert.cisa.gov/sites/default/files/recommended_practices/NCCIC_ICS-CERT_Defense_in_Depth_2016_S508C.pdf

    Reference

Methodology and review provenance

AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.