PatchSiren cyber security CVE debrief
CVE-2024-44995 Siemens CVE debrief
A deadlock vulnerability exists in the HNS3 (Hisilicon Network Subsystem 3) Ethernet driver within the Linux kernel. The issue occurs when configuring Traffic Control (TC) during a device reset operation, leading to a race condition that can cause system deadlock. This affects Siemens industrial networking products running SINEC OS that incorporate the vulnerable kernel component. The vulnerability is classified as MEDIUM severity with a CVSS 3.1 score of 5.5, reflecting local attack vector and high availability impact. The CISA advisory ICSA-25-226-07, published 2025-08-12 and most recently updated 2026-02-25, coordinates disclosure for affected Siemens products.
- Vendor
- Siemens
- Product
- RUGGEDCOM RST2428P (6GK6242-6PA00)
- CVSS
- MEDIUM 5.5
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2025-08-12
- Original CVE updated
- 2026-02-25
- Advisory published
- 2025-08-12
- Advisory updated
- 2026-02-25
Who should care
Organizations operating Siemens RUGGEDCOM and SCALANCE industrial networking infrastructure, particularly those in critical infrastructure sectors (energy, manufacturing, transportation) where network availability is essential. System administrators responsible for SINEC OS-based devices and security teams monitoring industrial control system vulnerabilities should prioritize assessment and patching.
Technical summary
The vulnerability resides in the HNS3 network driver (drivers/net/ethernet/hisilicon/hns3) in the Linux kernel. A race condition between TC (Traffic Control) configuration operations and device reset handling can result in a deadlock, causing the network interface or system to become unresponsive. The CVSS 3.1 vector (AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H) indicates this is locally exploitable with low attack complexity, requiring low privileges but no user interaction, with confidentiality and integrity impacts none but availability impact high. Affected Siemens products are industrial Ethernet switches and routers used in operational technology environments.
Defensive priority
medium
Recommended defensive actions
- Apply vendor-provided firmware updates to V3.2 or later for RUGGEDCOM RST2428P and SCALANCE XCM-/XRM-/XCH-/XRH-300 family devices
- For SCALANCE XC-300/XR-300/XC-400/XR-500WG/XR-500 family, consult Siemens ProductCERT advisory SSA-355557 for specific configuration guidance and update paths
- Implement network segmentation for industrial control systems to limit local access to affected devices
- Monitor for system hangs or unresponsiveness in affected network infrastructure devices
- Review and apply CISA ICS recommended practices for defense-in-depth strategies
Evidence notes
CVE description confirms deadlock in net: hns3 during TC configuration during reset. CISA CSAF advisory ICSA-25-226-07 identifies affected Siemens products: RUGGEDCOM RST2428P, SCALANCE XC-300/XR-300/XC-400/XR-500WG/XR-500 family, and SCALANCE XCM-/XRM-/XCH-/XRH-300 family. CVSS vector AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H indicates local attack, low complexity, low privileges required, no user interaction, and high availability impact.
Sources and references
Verified primary and authoritative sources
-
CVE-2024-44995 CVE Program record
Publisher, destination, and source semantics verified
URL: https://www.cve.org/CVERecord?id=CVE-2024-44995
CVE Program - Official CVE Program record with source-provided CVE metadata.
-
CVE-2024-44995 NVD vulnerability detail
Publisher, destination, and source semantics verified
URL: https://nvd.nist.gov/vuln/detail/CVE-2024-44995
NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.
Supplemental references
-
Source item URL
Unverified legacy reference
URL: https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/OT/white/2025/icsa-25-226-07.json
cisa_csaf
-
Source reference
Unverified legacy reference
URL: https://cert-portal.siemens.com/productcert/csaf/ssa-355557.json
Reference
-
Source reference
Unverified legacy reference
URL: https://cert-portal.siemens.com/productcert/html/ssa-355557.html
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/news-events/ics-advisories/icsa-25-226-07
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/news-events/ics-alerts/ics-alert-10-301-01
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/resources-tools/resources/ics-recommended-practices
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/topics/industrial-control-systems
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/sites/default/files/recommended_practices/NCCIC_ICS-CERT_Defense_in_Depth_2016_S508C.pdf
Reference
Methodology and review provenance
AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.