These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.
A divide-by-zero vulnerability exists in the Linux kernel's USB storage subsystem, specifically within the isd200 sub-driver. The flaw occurs when the driver uses ATA ID information (HEADS and SECTORS values) to calculate cylinder and head values for READ/WRITE command block descriptors. If either value is zero, the division and modulus operations trigger a kernel crash. While genuine hardware would not p [truncated]
A NULL pointer dereference vulnerability exists in the Linux kernel's network PHY subsystem. The `phy_get_internal_delay` function may attempt to access an empty array when a driver calls it without defining `delay_values` while `rx-internal-delay-ps` or `tx-internal-delay-ps` is set to 0 in the device tree. This condition triggers a kernel panic with the message 'unable to handle kernel NULL pointer dere [truncated]
CVE-2024-27038 is a NULL pointer dereference vulnerability in the Linux kernel's clock framework, specifically within the `clk_core_get()` function. The flaw exists because `__clk_get_hw()` can return NULL, which is then dereferenced by `clk_core_get()` at `hw->core` without proper validation. This regression was introduced when commit dde4eff47c82 (clk: Look for parents with clkdev based clk_lookups) rem [truncated]
A HIGH severity vulnerability (CVSS 8.8) in the Linux kernel's Network Block Device (nbd) subsystem affects Siemens SIMATIC S7-1500 TM MFP industrial controllers with GNU/Linux subsystem. The flaw involves a missing NULL check for nla_nest_start(), which may fail and return NULL, potentially leading to undefined behavior. Published 2024-04-09 and last modified 2026-05-14 per official CVE records. No patch [truncated]
A vulnerability in the Linux kernel's Reliable Datagram Sockets (RDS) networking subsystem affects Siemens SIMATIC S7-1500 TM MFP industrial control systems. The issue involves improper connection state handling in `rds_conn_connect_if_down()`, where `get_mr()` can fail if a connection is not yet established, potentially triggering a WARNING condition. The vulnerability was published on April 9, 2024, and [truncated]
CVE-2024-26982 is a HIGH-severity Linux kernel Squashfs issue referenced in Siemens advisory ICSA-25-072-03 for SIMATIC S7-1500 TM MFP - BIOS. The published advisory describes the flaw as a missing check to ensure an inode number is not the invalid value of zero. The supplied CVSS vector indicates a local attack path with low privileges and no user interaction, and the advisory states that no fix is curre [truncated]
A vulnerability in the Linux kernel's Intel i915 graphics driver (drm/i915/gt) could allow a local attacker to cause a denial of service condition. The issue stems from improper state management where the queue_priority_hint is not reset when the GPU engine is parked, potentially leading to priority inheritance problems or scheduler misbehavior. The vulnerability was resolved by resetting queue_priority_h [truncated]
A vulnerability in the Linux kernel's SCSI core subsystem could allow a local attacker to cause a denial of service condition. The issue stems from a regression where procfs host directories are not properly removed, leading to resource exhaustion over time. This affects Siemens SIMATIC S7-1500 TM MFP devices that utilize the GNU/Linux subsystem. The vulnerability requires local access with low privileges [truncated]
A deadlock vulnerability in the Linux kernel's USB core subsystem affects Siemens SIMATIC S7-1500 TM MFP industrial control systems. The flaw resides in usb_deauthorize_interface(), where improper locking can cause the kernel to hang, resulting in denial of service. With local access and low privileges, an attacker can trigger this deadlock, potentially impacting availability of critical industrial proces [truncated]
A vulnerability in the Linux kernel's tracing/trigger subsystem could allow a local attacker to cause a denial of service condition. The issue stems from improper error handling when allocating snapshot memory in the tracing trigger functionality. Specifically, when snapshot allocation fails, the code did not properly return an error code, potentially leading to undefined behavior or system instability. T [truncated]
This CVE addresses a fortify source warning in the RDMA/mlx5 kernel driver related to Ethernet segment access. The vulnerability affects the GNU/Linux subsystem within Siemens SIMATIC S7-1500 TM MFP industrial control systems. The issue was originally published in the Linux kernel context and subsequently incorporated into Siemens' security advisory tracking for affected OT products. The CVSS 3.1 vector ( [truncated]
A vulnerability in the Linux kernel's x86 memory management subsystem allows local attackers to trigger a denial of service condition. The flaw exists in the `copy_from_kernel_nofault()` function, which improperly permitted reads from the vsyscall page—a legacy virtual system call mechanism on x86_64 systems. This could lead to system instability or crashes when exploited by a local, low-privileged attack [truncated]
A race condition in the Linux kernel's ath9k wireless driver could allow a local attacker to cause a denial of service. The vulnerability exists because ath9k_wmi_event_tasklet() may execute before device initialization is complete, leading to use of uninitialized data structures. The CVSS 3.1 vector (AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H) indicates this requires local access, low privileges, and high attac [truncated]
A memory leak vulnerability exists in the ACPI processor_idle subsystem within the Linux kernel. The flaw occurs in acpi_processor_power_exit(), where allocated memory is not properly freed during error paths or module exit conditions. This affects the GNU/Linux subsystem of Siemens SIMATIC S7-1500 TM MFP industrial control devices. The vulnerability is classified as MEDIUM severity with a CVSS 3.1 score [truncated]
A vulnerability in the Linux kernel's IOMMU VT-d (Virtualization Technology for Directed I/O) subsystem could allow a local attacker to cause a denial of service condition. The flaw occurs when the kernel issues an Address Translation Services (ATS) Invalidation request after a device has been disconnected, leading to a potential system crash or instability. This affects Siemens SIMATIC S7-1500 TM MFP ind [truncated]
CVE-2024-26889 is a buffer overflow vulnerability in the Bluetooth hci_core component of the Linux kernel. The vulnerability was published on April 9, 2024, and affects Siemens SIMATIC S7-1500 TM MFP industrial control systems through their GNU/Linux subsystem. The issue carries a CVSS 3.1 score of 5.5 (MEDIUM severity) with a vector of AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H, indicating local attack vector, [truncated]
CVE-2024-26884 is a medium-severity vulnerability in the Linux kernel's BPF (Berkeley Packet Filter) hashtab implementation, specifically affecting 32-bit architectures. The flaw involves an incorrect overflow check that could lead to denial of service conditions. Siemens has identified this vulnerability as affecting the GNU/Linux subsystem of their SIMATIC S7-1500 TM MFP industrial control product. The [truncated]
A null pointer dereference vulnerability exists in Siemens JT2Go and Teamcenter Visualization products when parsing specially crafted X_T files. An attacker can exploit this flaw to crash the application, resulting in a denial of service condition. The vulnerability requires local access and user interaction, with a CVSS 3.1 score of 3.3 (Low severity). Siemens has released patched versions for all affect [truncated]
CVE-2024-26276 is a stack exhaustion vulnerability in Siemens JT2Go and Teamcenter Visualization products, published on June 11, 2024. The vulnerability occurs when parsing specially crafted X_T (Parasolid) files, allowing an attacker to cause a denial of service condition. The CVSS 3.1 score of 3.3 (Low severity) reflects the local attack vector and user interaction requirements. Affected products includ [truncated]
CVE-2024-26275 is a high-severity out-of-bounds read vulnerability in Siemens JT2Go and Teamcenter Visualization products. The flaw occurs when parsing specially crafted X_T (Parasolid) files, allowing an attacker to execute arbitrary code in the context of the current process. Published on June 11, 2024, and last modified on August 13, 2024, this vulnerability affects four product variants: JT2Go, Teamce [truncated]
A null pointer dereference vulnerability in Palo Alto Networks PAN-OS software enables unauthenticated remote attackers to cause denial of service (DoS) by sending crafted packets through the data plane. Successful exploitation stops a core system service; repeated attempts force the firewall into maintenance mode. This vulnerability affects Siemens RUGGEDCOM APE1808 devices when configured with Palo Alto [truncated]
Web sessions in the management interface of Palo Alto Networks PAN-OS software fail to expire under certain conditions, creating a window for unauthorized access if an attacker obtains or intercepts a valid session token. The vulnerability carries a CVSS 3.1 score of 7.8 (HIGH) with an attack vector of local access and requires user interaction, but successful exploitation yields high impact across confid [truncated]
A credential disclosure vulnerability in Palo Alto Networks PAN-OS software enables an authenticated read-only administrator to obtain the plaintext credentials of stored external system integrations such as LDAP, SCP, RADIUS, TACACS+, and SNMP from the web interface. The vulnerability was published on 2024-04-09 and last modified on 2024-12-10. The affected product is Siemens RUGGEDCOM APE1808, as identi [truncated]
A DOM-based cross-site scripting (XSS) vulnerability exists in Palo Alto Networks PAN-OS software. When an administrator views a specially crafted link to the PAN-OS web interface, a remote attacker can execute JavaScript in the context of the administrator's browser session. This represents a high-severity client-side attack vector that could lead to session hijacking or administrative action manipulatio [truncated]
A stored cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS software allows a malicious authenticated read-write administrator to inject and store a JavaScript payload via the web interface. When another properly authenticated administrator views the compromised content, the payload executes in their browser session, enabling the attacker to perform actions that appear to originate from [truncated]
CVE-2023-6237 is a denial-of-service issue in OpenSSL RSA public key validation. When applications call EVP_PKEY_public_check() on RSA keys from an untrusted source, checking an excessively large invalid modulus can take a long time and create operational delays. Siemens mapped this issue to 19 SCALANCE W-series products in its 2025 advisory and recommends updating to V3.0.0 or later. The OpenSSL SSL/TLS [truncated]
CVE-2023-50821 is a medium-severity input validation vulnerability in Siemens SIMATIC WinCC and SIMATIC PCS 7 products. The flaw exists in the login dialog box, where improper input validation allows an attacker to trigger a persistent denial-of-service condition. Published on April 9, 2024, and last modified on January 14, 2025, this vulnerability carries a CVSS 3.1 score of 6.2 (MEDIUM). The attack vect [truncated]
CVE-2023-38802 is a high-severity denial-of-service vulnerability affecting FRRouting FRR versions 7.5.1 through 9.0 and Pica8 PICOS 4.3.3.2. The vulnerability was published on April 9, 2024, and last modified on May 13, 2025. A remote attacker can exploit this flaw by sending a crafted BGP update message containing a corrupted attribute 23 (Tunnel Encapsulation), causing the affected routing software to [truncated]
CVE-2023-38046 is a medium-severity vulnerability (CVSS 5.5) affecting Siemens RUGGEDCOM APE1808, published on 2024-04-09 and last modified on 2024-12-10. The vulnerability exists in Palo Alto Networks PAN-OS software that enables an authenticated administrator with the privilege to commit a specifically created configuration to read local files and resources from the system. This vulnerability requires h [truncated]
CVE-2023-35982 is a critical buffer overflow vulnerability affecting Siemens SCALANCE W1750D wireless access points. The vulnerability resides in multiple underlying services and can be exploited by sending specially crafted packets to the PAPI (Aruba's access point management protocol) UDP port 8211. Successful exploitation allows unauthenticated remote attackers to execute arbitrary code with privileged [truncated]