PatchSiren cyber security CVE debrief
CVE-2024-56691 Siemens CVE debrief
CVE-2024-56691 is a medium-severity vulnerability (CVSS 5.5) affecting the Intel SoC PMIC BXTWC driver in the Linux kernel. The flaw stems from implementation issues in converting the driver to use IRQ domain hierarchy for USB Type-C device handling. While the design approach was sound, the execution contained inherited flaws that could lead to denial of service conditions. Siemens has identified this vulnerability as affecting multiple industrial networking product families including RUGGEDCOM RST2428P, SCALANCE XC-300/XR-300/XC-400/XR-500WG/XR-500 family, and SCALANCE XCM-/XRM-/XCH-/XRH-300 family. The vulnerability was published on August 12, 2025, with the advisory last modified on February 25, 2026. This CVE is not listed in CISA's Known Exploited Vulnerabilities catalog.
- Vendor
- Siemens
- Product
- RUGGEDCOM RST2428P (6GK6242-6PA00)
- CVSS
- MEDIUM 5.5
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2025-08-12
- Original CVE updated
- 2026-02-25
- Advisory published
- 2025-08-12
- Advisory updated
- 2026-02-25
Who should care
Organizations operating Siemens industrial networking equipment including RUGGEDCOM RST2428P switches and SCALANCE XC/XR/XCM/XRM/XCH/XRH series switches in industrial control system environments. System administrators responsible for Linux kernel security on Intel Broxton-based platforms should also monitor this vulnerability.
Technical summary
The vulnerability exists in the mfd/intel_soc_pmic_bxtwc driver which handles power management for Intel Broxton SoC platforms. The driver's conversion to use IRQ domain hierarchy for USB Type-C device interrupt handling contains implementation flaws that could result in system instability or denial of service. The CVSS 3.1 score of 5.5 (AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H) indicates a local attack vector where an attacker with low privileges could cause high availability impact without user interaction. The confidentiality and integrity impacts are rated as none.
Defensive priority
medium
Recommended defensive actions
- Apply vendor-provided updates: Update RUGGEDCOM RST2428P and SCALANCE XCM-/XRM-/XCH-/XRH-300 family to V3.2 or later
- For SCALANCE XC-300/XR-300/XC-400/XR-500WG/XR-500 family, consult Siemens advisory for specific update guidance
- Follow CISA ICS recommended practices for defense-in-depth strategies
- Monitor Siemens ProductCERT advisory SSA-355557 for additional remediation guidance
Evidence notes
Vulnerability description and affected products confirmed through CISA CSAF advisory ICSA-25-226-07, which references Siemens ProductCERT advisory SSA-355557. CVSS vector AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H indicates local attack vector with low attack complexity, low privileges required, no user interaction, and high availability impact.
Official resources
-
CVE-2024-56691 CVE record
CVE.org
-
CVE-2024-56691 NVD detail
NVD
-
Source item URL
cisa_csaf
-
Source reference
Reference
-
Source reference
Reference
-
Source reference
Reference
-
Source reference
Reference
-
Source reference
Reference
-
Source reference
Reference
-
Source reference
Reference
2025-08-12