These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.
CVE-2021-44879 is a NULL pointer dereference vulnerability in the Linux kernel's F2FS (Flash-Friendly File System) garbage collection code. The flaw exists in the `gc_data_segment` function in `fs/f2fs/gc.c` where special files are not properly considered, leading to a `move_data_page` NULL pointer dereference. This vulnerability affects Linux kernel versions before 5.16.3. The issue was originally identi [truncated]
CVE-2021-3712 is an OpenSSL ASN.1 string handling issue that can cause a read buffer overrun when code assumes ASN.1 strings are NUL-terminated but they were directly constructed without a trailing NUL. The reported impact includes application crashes and possible disclosure of private memory contents. In the Siemens/CISA advisory corpus, the issue is tied to multiple SCALANCE wireless products and is add [truncated]
CVE-2025-6395 is a medium-severity NULL pointer dereference in GnuTLS's _gnutls_figure_common_ciphersuite() affecting Siemens SIMATIC S7-1500 CPU/SIPLUS models with an additional GNU/Linux subsystem. The source advisory lists no fix as available, so the practical defenses are to restrict shell access to trusted personnel and run only trusted software on the affected devices.
CVE-2025-7425 is a high-severity memory-corruption issue in libxslt affecting Siemens SIMATIC CN 4100 versions before 5.0. Under certain XSLT processing paths, including key()-related tree fragments, the flaw can lead to improper cleanup of ID attributes, use-after-free crashes, or heap corruption.
CVE-2025-32989 is a network-reachable information-disclosure issue in GnuTLS certificate parsing that Siemens mapped to specific SIMATIC S7-1500 CPU models in its ProductCERT advisory. A malformed Certificate Transparency Signed Certificate Timestamp (SCT) extension can trigger a heap-buffer-overread during X.509 parsing, potentially exposing confidential data. Siemens lists no fix at this time, so affect [truncated]
CVE-2025-32988 is a double-free in GnuTLS SAN export logic that Siemens tracked in its SIMATIC S7-1500 CPU family advisory. When an Subject Alternative Name entry contains an otherName with an invalid or malformed type-id OID, GnuTLS may call asn1_delete_structure() on an ASN.1 node it does not own, creating a double-free condition. The advisory says the issue can be triggered through public GnuTLS APIs a [truncated]
CVE-2025-41222 affects Siemens RUGGEDCOM products and involves improper handling of malformed TLS handshake messages. According to the advisory, an attacker with network access to the webserver could trigger a denial of service that crashes the web server and the device. The CVSS v3.1 score is 5.3 (Medium), with availability impact only.
CVE-2025-40742 affects a broad set of Siemens SIPROTEC 5 and Compact 7SX800 devices. The issue is that some device functions place session identifiers in URL requests, which can expose those identifiers through browser history, logs, or other storage mechanisms. If an attacker obtains such data, it could contribute to unauthorized access. The CVE was published on 2025-07-08 and last modified on 2026-05-12.
CVE-2025-40740 is a high-severity vulnerability in Siemens Solid Edge SE2025 that can be triggered when the application parses specially crafted PAR files. The issue is an out-of-bounds read past the end of an allocated structure, and Siemens/CISA warn it could let an attacker execute code in the context of the current process. The supplied advisory recommends avoiding untrusted PAR files and updating to [truncated]
CVE-2025-40739 is a high-severity vulnerability in Siemens Solid Edge SE2025 disclosed on 2025-07-08. The issue is an out-of-bounds read past the end of an allocated structure while parsing specially crafted PAR files. According to the advisory, successful exploitation could allow code execution in the context of the current process. Siemens recommends updating to V225.0 Update 5 or later and avoiding unt [truncated]
CVE-2025-40738 is a high-severity Siemens SINEC NMS vulnerability reported in CISA’s advisory on 2025-07-08. The issue is a file path validation weakness during ZIP extraction that can let an attacker write arbitrary files to restricted locations, with potential for code execution with elevated privileges. Siemens’ remediation is to update to V4.0 or later.
CVE-2025-40737 affects Siemens SINEC NMS and stems from improper file path validation when extracting uploaded ZIP files. A successful attack could let an attacker write arbitrary files to restricted locations and potentially execute code with elevated privileges.
CVE-2025-40736 is a critical vulnerability in Siemens SINEC NMS where an exposed endpoint can be used to modify administrative credentials without authorization. According to the advisory, an unauthenticated attacker could reset the superadmin password and gain full control of the application. Siemens advises updating to V4.0 or later.
CVE-2025-40735 is a high-severity SQL injection issue affecting Siemens SINEC NMS. According to the CISA CSAF advisory and Siemens security advisory, the flaw can allow an attacker to execute arbitrary SQL queries against the server database. Siemens’ remediation is to update to V4.0 or later.
CVE-2025-40593 is a medium-severity vulnerability affecting Siemens SIMATIC CN 4100. According to the CISA CSAF advisory, an attacker can store arbitrary files in the device’s SFTP folder and potentially cause a denial-of-service condition. Siemens provides a fix in V4.0 or later.
CVE-2025-27127 is a medium-severity Siemens issue affecting TIA Project-Server and multiple TIA Portal versions. A user with contributor privileges can upload a malicious project into the document root and trigger a denial of service. Siemens and CISA published the advisory on 2025-07-08, with CISA noting a later update on 2025-08-12 that added a fix note for TIA Portal V19 Update 4.
CVE-2025-23365 is a high-severity vulnerability in Siemens TIA Administrator that can let a low-privileged user trigger installations by overwriting cache files and modifying the downloads path. According to the CISA CSAF advisory and Siemens reference materials, that behavior can be abused to escalate privileges and execute arbitrary code. Siemens advises updating to version V3.0.6 or later. The advisory [truncated]
CVE-2025-23364 affects Siemens TIA Administrator and was published on 2025-07-08 in CISA advisory ICSA-25-191-03. The issue is an improper validation of code-signing certificates, which could let an attacker bypass the check and execute arbitrary code during installations. Siemens and CISA list a vendor fix in version 3.0.6 or later. The supplied CVSS v3.1 vector rates the issue as medium severity (6.2), [truncated]
CVE-2025-6020 is a high-severity local privilege-escalation flaw attributed to linux-pam's pam_namespace module. In the supplied CISA/Siemens advisory, the issue is described as improper protection around user-controlled paths, which can let a local user gain root privileges through symlink attacks and race conditions. The advisory lists Siemens RUGGEDCOM ROX platforms as affected and recommends updating [truncated]
CVE-2025-49796 is a critical memory corruption issue in libxml2 that can be triggered while processing certain sch:name elements from a crafted XML file. In the Siemens advisory republished by CISA, the issue is tied to multiple RUGGEDCOM ROX products and can lead to crashes, denial of service, or other undefined behavior. Siemens’ remediation is to update to V2.17.1 or later.
CVE-2025-49794 is a critical use-after-free in libxml2 affecting Siemens RUGGEDCOM ROX products covered by the CISA/Siemens advisory. The issue can be triggered during XPath parsing when Schematron uses <sch:name path="..."/> elements, allowing crafted XML input to crash the program and potentially cause other undefined behavior. Siemens lists affected RUGGEDCOM ROX models and recommends updating to V2.17.1 or later.
CVE-2025-6021 is a HIGH-severity flaw in libxml2’s xmlBuildQName function that can cause a stack-based buffer overflow through integer overflow in buffer size calculations. In the Siemens advisory republished by CISA, the affected product line is Siemens SIMATIC CN 4100 versions earlier than 5.0. The documented impact is memory corruption or denial of service when processing crafted input.
CVE-2025-40592 is a medium-severity zip path traversal issue in Siemens Mendix Studio Pro's module installation process. The advisory says a malicious module—such as one distributed through the Mendix Marketplace—could write or modify arbitrary files outside a developer's project directory when installed. Siemens and CISA published the advisory on 2025-06-12, and the advisory was revised on 2025-07-08 to [truncated]
CVE-2025-2884 is an out-of-bounds read in the TCG TPM 2.0 reference implementation’s CryptHmacSign helper function. In the Siemens advisory republished by CISA, the issue affects multiple SIMATIC industrial PCs and related devices, with fixes available for some product lines and no fix planned or available for others.
CVE-2026-0228 is a medium-severity certificate-validation issue associated in the source corpus with Siemens RUGGEDCOM APE1808. The advisory text says expired certificates may be accepted for a Windows Terminal Server Agent connection path even when configuration would normally block it. CISA published the advisory on 2025-06-10 and later republished it on 2026-03-12 based on Siemens ProductCERT SSA-513708.
CVE-2026-0227 is a high-severity denial-of-service issue documented in CISA advisory ICSA-25-162-02 and Siemens ProductCERT advisory SSA-513708. The advisory metadata ties the issue to Siemens RUGGEDCOM APE1808 and rates it CVSS 7.5 (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H), indicating a remotely reachable availability impact without authentication. The supplied advisory text states that an unauthenticated at [truncated]
CVE-2025-9232 describes a crash-only out-of-bounds read in OpenSSL’s HTTP client path when no_proxy is set and the URL authority host is an IPv6 address. The practical impact is denial of service for applications that pass attacker-influenced URLs into the OpenSSL HTTP client APIs. The source advisory also notes that OCSP and CMP client code paths use the same HTTP client functionality, but their URLs are [truncated]
cPanel’s EasyApache 4 25.33 release includes a security update for OpenSSL 1.1.1w to address CVE-2025-9230. The supplied vendor note confirms that the fix is part of the EasyApache 4 package set, alongside routine updates to other components, but it does not provide the vulnerability class, CVSS score, or exploitation details. Operators should treat this as a patching item for cPanel/WHM systems that use [truncated]
CVE-2025-8224 is a low-severity, locally reachable denial-of-service issue tied to GNU Binutils BFD library code and mapped in the Siemens advisory to SIMATIC S7-1500 CPU products that include the additional GNU/Linux subsystem. The issue is publicly disclosed, but the supplied advisory data says local access is required and Siemens listed no fix at the time of the advisory, so defenders should focus on l [truncated]
CVE-2025-7546 is a medium-severity issue that the supplied Siemens CSAF advisory ties to SIMATIC S7-1500 CPU family products, with no fix available at publication time and mitigation guidance focused on restricting local access. The source description also says the exploit was publicly disclosed and references an out-of-bounds write, but it contains a component mismatch: the narrative text names GNU Binut [truncated]