CNNVD-202509-3158 Information

CNNVD ID

CNNVD-202509-3158

CVE-2025-8531

  • CNNVD Published: 2025-09-19

Description (Chinese)

Mitsubishi Electric MELSEC-Q Series是日本三菱电机(Mitsubishi Electric)公司的一系列可编程逻辑控制器。 Mitsubishi Electric MELSEC-Q Series存在安全漏洞,该漏洞源于长度参数处理不当,可能导致整数下溢,进而导致以太网通信中断和控制程序停止执行。

Description (English)

Mitsubishi Electric MELSEC-Q Series is a series of programmable logical controllers for Mitsubishi Electric, Japan. There is a security loophole in Mitsubishi Electric MELSEC-Q Series, which stems from the mishandling of length parameters, which may lead to an integer spill, leading to the suspension of the Ethernet communication interruption and control procedures.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

MLDB

Published

2025-09-19

Last Modified

2026-02-24

References

https://jvn.jp/vu/JVNVU97846038/ https://www.mitsubishielectric.com/psirt/vulnerability/pdf/2025-013_en.pdf https://access.redhat.com/security/cve/cve-2025-8531

Patch

https://www.mitsubishielectric.com/fa/download/search.page?mode=manual&kisyu=/plcq

Share on: