PatchSiren cyber security CVE debrief
CVE-2023-52510 Siemens CVE debrief
A use-after-free (UAF) vulnerability in the Linux kernel's ieee802154 ca8210 driver was resolved via a kernel patch. The flaw existed in the ca8210_probe function and could potentially allow memory corruption. Siemens has assessed this CVE as 'Misinformed' for its affected industrial networking products, indicating the vulnerability does not apply to these systems as initially reported. The CVE was published on 2025-08-12 and last modified on 2026-02-25. No CVSS score or severity is available. This vulnerability is not listed in CISA's Known Exploited Vulnerabilities (KEV) catalog.
- Vendor
- Siemens
- Product
- RUGGEDCOM RST2428P (6GK6242-6PA00)
- CVSS
- Unknown
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2025-08-12
- Original CVE updated
- 2026-02-25
- Advisory published
- 2025-08-12
- Advisory updated
- 2026-02-25
Who should care
Organizations operating Siemens industrial networking equipment including RUGGEDCOM RST2428P and SCALANCE switch families running SINEC OS should review this advisory to confirm their exposure assessment. Security teams in OT/ICS environments should monitor vendor advisories for any change in impact assessment.
Technical summary
CVE-2023-52510 describes a use-after-free vulnerability in the ca8210_probe function of the Linux kernel's ieee802154 (IEEE 802.15.4 low-rate wireless personal area network) driver. The vulnerability was resolved in the upstream Linux kernel. Siemens has assessed this CVE as 'Misinformed' for its affected product lines, indicating that the vulnerability does not actually affect these products as initially believed. The affected products include industrial Ethernet switches running SINEC OS. No CVSS score has been assigned. The vulnerability is not known to be exploited in the wild.
Defensive priority
low
Recommended defensive actions
- Verify that affected Siemens industrial networking products (RUGGEDCOM RST2428P, SCALANCE XC-300/XR-300/XC-400/XR-500WG/XR-500 family, SCALANCE XCM-/XRM-/XCH-/XRH-300 family) are running supported SINEC OS versions 3.1
- Review Siemens ProductCERT advisory SSA-613116 for product-specific guidance
- Apply vendor-provided patches or updates when available per vendor security advisory
- Monitor CISA ICS advisories for additional updates to ICSA-25-226-15
- Implement network segmentation for industrial control systems per CISA recommended practices
Evidence notes
The source CISA CSAF advisory ICSA-25-226-15 explicitly categorizes the threat impact for this CVE as 'Misinformed' for all listed Siemens product IDs (CSAFPID-0001, CSAFPID-0003, CSAFPID-0004). The CVE description indicates a UAF fix in ca8210_probe. No CVSS vector is provided in the source. The CVE is not marked as KEV.
Sources and references
Verified primary and authoritative sources
-
CVE-2023-52510 CVE Program record
Publisher, destination, and source semantics verified
URL: https://www.cve.org/CVERecord?id=CVE-2023-52510
CVE Program - Official CVE Program record with source-provided CVE metadata.
-
CVE-2023-52510 NVD vulnerability detail
Publisher, destination, and source semantics verified
URL: https://nvd.nist.gov/vuln/detail/CVE-2023-52510
NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.
Supplemental references
-
Source item URL
Unverified legacy reference
URL: https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/OT/white/2025/icsa-25-226-15.json
cisa_csaf
-
Source reference
Unverified legacy reference
URL: https://cert-portal.siemens.com/productcert/csaf/ssa-613116.json
Reference
-
Source reference
Unverified legacy reference
URL: https://cert-portal.siemens.com/productcert/html/ssa-613116.html
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/news-events/ics-advisories/icsa-25-226-15
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/news-events/ics-alerts/ics-alert-10-301-01
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/resources-tools/resources/ics-recommended-practices
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/topics/industrial-control-systems
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/sites/default/files/recommended_practices/NCCIC_ICS-CERT_Defense_in_Depth_2016_S508C.pdf
Reference
Methodology and review provenance
AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.