High severity7.5NVD Advisory· Published Sep 18, 2024· Updated Jun 17, 2026
CVE-2024-39589
CVE-2024-39589
Description
Multiple invalid pointer dereference vulnerabilities exist in the OpenPLC Runtime EtherNet/IP parser functionality of OpenPLC_v3 16bf8bac1a36d95b73e7b8722d0edb8b9c5bb56a. A specially crafted EtherNet/IP request can lead to denial of service. An attacker can send a series of EtherNet/IP requests to trigger these vulnerabilities.This instance of the vulnerability occurs within the Protected_Logical_Read_Reply function
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:o:openplcproject:openplc_v3_firmware:2024-05-28:*:*:*:*:*:*:*
- Range: 16bf8bac1a36d95b73e7b8722d0edb8b9c5bb56a
Patches
Vulnerability mechanics
References
2- talosintelligence.com/vulnerability_reports/TALOS-2024-2016nvdExploitThird Party Advisory
- www.talosintelligence.com/vulnerability_reports/TALOS-2024-2016nvd
News mentions
0No linked articles in our index yet.