PatchSiren cyber security CVE debrief
CVE-2024-46669 Siemens CVE debrief
CVE-2024-46669 is a low-severity availability issue described in the CISA-republished Siemens ProductCERT advisory for RUGGEDCOM APE1808. The source text says an authenticated attacker could trigger an integer overflow or wraparound and crash the IPsec tunnel via crafted requests, causing denial of service. The advisory corpus also contains a product-description mismatch that references FortiSASE/FortiOS and a Fortigate NGFW remediation, so organizations should verify the exact affected asset and software branch before acting.
- Vendor
- Siemens
- Product
- RUGGEDCOM APE1808
- CVSS
- LOW 3.5
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2025-02-11
- Original CVE updated
- 2026-03-12
- Advisory published
- 2025-02-11
- Advisory updated
- 2026-03-12
Who should care
Siemens RUGGEDCOM APE1808 operators, OT/ICS defenders, and network teams responsible for IPsec/IKE services should review this advisory. Because the supplied source text references both Siemens RUGGEDCOM APE1808 and FortiSASE/FortiOS/Fortigate NGFW, applicability should be validated against the exact deployed product and version before scheduling remediation.
Technical summary
The advisory maps to CWE-190 (Integer Overflow or Wraparound) and uses CVSS 3.1 AV:A/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L, indicating adjacent-network access, low privileges, and no user interaction. According to the supplied source description, crafted requests from an authenticated attacker may crash the IPsec tunnel service, resulting in denial of service rather than confidentiality or integrity impact. The listed remediation is to update to V7.4.7 and contact customer support for patch/update information, but the corpus contains inconsistent product naming that should be reconciled before deployment.
Defensive priority
Medium-low. The severity is low and the impact is availability-only, but it should be prioritized sooner if the affected IPsec tunnel is business-critical or supports operational connectivity.
Recommended defensive actions
- Confirm whether any deployed Siemens RUGGEDCOM APE1808 assets match the advisory and verify the exact affected version branch before remediation.
- Apply the vendor-listed update path to V7.4.7 or follow Siemens customer support guidance for patch and update information.
- Restrict access to IPsec/IKE services to trusted administrative and network paths, and monitor for unexpected tunnel crashes or restarts.
- Use CISA and Siemens industrial-control-system defense-in-depth guidance, and keep validated backups and rollback plans ready before maintenance.
Evidence notes
This debrief is based on the supplied CISA CSAF source item ICSA-25-044-06, published 2025-02-11 and republished 2026-03-12, plus the referenced Siemens advisory SSA-770770, the official CVE record, and CISA ICS guidance links. The corpus is internally inconsistent: the vendor/product tree identifies Siemens RUGGEDCOM APE1808, while the vulnerability description and remediation text refer to FortiSASE/FortiOS and Fortigate NGFW. That mismatch is preserved as evidence and should be treated as a verification flag, not resolved by assumption.
Sources and references
Verified primary and authoritative sources
-
CVE-2024-46669 CVE Program record
Publisher, destination, and source semantics verified
URL: https://www.cve.org/CVERecord?id=CVE-2024-46669
CVE Program - Official CVE Program record with source-provided CVE metadata.
-
CVE-2024-46669 NVD vulnerability detail
Publisher, destination, and source semantics verified
URL: https://nvd.nist.gov/vuln/detail/CVE-2024-46669
NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.
Supplemental references
-
Source item URL
Unverified legacy reference
URL: https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/OT/white/2025/icsa-25-044-06.json
cisa_csaf
-
Source reference
Unverified legacy reference
URL: https://cert-portal.siemens.com/productcert/csaf/ssa-770770.json
Reference
-
Source reference
Unverified legacy reference
URL: https://cert-portal.siemens.com/productcert/html/ssa-770770.html
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/news-events/ics-advisories/icsa-25-044-06
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/news-events/ics-alerts/ics-alert-10-301-01
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/resources-tools/resources/ics-recommended-practices
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/topics/industrial-control-systems
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/sites/default/files/recommended_practices/NCCIC_ICS-CERT_Defense_in_Depth_2016_S508C.pdf
Reference
Methodology and review provenance
AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.