You are here

Mitsubishi Electric MELSEC-Q Series PLCs (ICSA-19-029-02)

Mitsubishi Electric MELSEC-Q Series PLCs (ICSA-19-029-02)

Created: Tuesday, January 29, 2019 - 16:37
Categories:
Cybersecurity

The NCCIC has published an advisory on resource exhaustion vulnerability in Mitsubishi Electric MELSEC-Q Series PLCs. Numerous products and versions of these products are affected. Successful exploitation of this vulnerability could allow a remote attacker to send specially crafted packets to the device, causing Ethernet communication to stop. Mitsubishi Electric has produced a new version of the firmware. The NCCIC also advises on a series of mitigating measures for this vulnerability. Read the advisory at NCCIC/ICS-CERT.