Savannah lwIP SMTP client
What happened
View CSAF Summary Successful exploitation of this vulnerability could crash the device being accessed; a buffer overflow condition may allow remote code execution (running programs on a machine from somewhere else). Recommended Practices CISA recommends users take defensive measures to minimize the risk of exploitation of this vulnerability.
Minimize network exposure for all control system devices and/or systems, ensuring they are not accessible from the internet. Locate control system networks and remote devices behind firewalls (a barrier that decides which network traffic may pass) and isolating them from business networks.
When remote access is required, use more secure methods, such as virtual private networks (VPNs (a service that routes a connection through another network)), recognizing VPNs may have vulnerabilities and should be updated to the most current version available. Also recognize VPN is only as secure as the connected devices.
Sources & evidence
- CISA Advisories Primary / official
Savannah lwIP SMTP client ↗
https://www.cisa.gov/news-events/ics-advisories/icsa-26-279-02