CNNVD-202601-3050 Information

CNNVD ID

CNNVD-202601-3050

CVE-2025-11044

  • CNNVD Published: 2026-01-19

Description (Chinese)

B&R Automation Runtime是B&R Automation公司的一个自动化运行时。 B&R Automation Runtime 6.5之前版本和R4.93之前版本存在安全漏洞,该漏洞源于ANSL-Server组件资源分配无限制或节流,可能导致网络上的未经验证攻击者赢得竞争条件,造成受影响设备永久拒绝服务。

Description (English)

B&R Automation Runtme is an automated running time for B&R Automation. There was a security loophole in previous versions of B&R Automation Runtime 6.5 and previous versions of R4.93, which stemmed from the unrestricted or no-go distribution of ANSL-Server components, which could lead to competitive conditions for uncertified attackers on the network, resulting in permanent denial of services to the affected equipment.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

B&R Automation

Published

2026-01-19

Last Modified

2026-02-24

References

https://www.br-automation.com/fileadmin/SA25P005-26597bd0.pdf https://access.redhat.com/security/cve/cve-2025-11044

Patch

https://www.br-automation.com/fileadmin/SA25P005-26597bd0.pdf

Share on: