Share: Email | Twitter

ID

VDE-2024-034

Published

2024-08-26 13:00 (CEST)

Last update

2024-08-22 15:34 (CEST)

Vendor(s)

TRUMPF SE

Product(s)

Article No° Product Name Affected Version(s)
TruControl installed on redpowerDirect >=3.50.0 <= 4.00.0 B
TruControl installed on TruDiode >=3.50.0 <= 4.00.0 B
TruControl installed on TruDisk >=3.50.0 <= 4.00.0 B
TruControl installed on TruFiber >=3.50.0 <= 4.00.0 B
TruControl installed on TruMicro 2000 >=3.50.0 <= 4.00.0 B
TruControl installed on TruMicro 5000 >=3.50.0 <= 4.00.0 B
TruControl installed on TruMicro 6000 >=3.50.0 <= 4.00.0 B
TruControl installed on TruMicro 7000 >=3.50.0 <= 4.00.0 B
TruControl installed on TruMicro 8000 >=3.50.0 <= 4.00.0 B
TruControl installed on TruMicro 9000 >=3.50.0 <= 4.00.0 B
TruControl installed on TruPulse >=3.50.0 <= 4.00.0 B

Summary

TruControl laser control software from versions 3.50.0 to 4.00.0.B use Linux kernel versions affected by CVE-2024-1086. The affected kernel vulnerability could lead to local privilege escalation.


Last Update:

30. August 2024 09:21

Weakness

Use After Free  (CWE-416) 

Summary

A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. The nft_verdict_init() function allows positive values as drop error within the hook verdict, and hence the nf_hook_slow() function can cause a double free vulnerability when NF_DROP is issued with a drop error which resembles NF_ACCEPT. We recommend upgrading past commit f342de4e2f33e0e39165d8639387aa6c19dff660.


Impact

To be able to exploit this vulnerability the attacker first needs to gain any kind of user access to the system. When logged on to the system the privilege escalation vulnerability can be exploited with following possible impacts/damages to the system:

  • Data loss in the laser control
  • Standstill of production
  • Damage by change of the laser control

Safety is not affected since it is controlled by an independent electromechanical safety mechanism.

Solution

Remediation

  • Update to the new release 4.04.0 of the TruControl software version.
  • Please contact your service partner (service.tls@trumpf.com) for instructions on how to get automatically informed for the new major release 4.04.0 of the TruControl software version.

Reported by

CERT@VDE coordinated with TRUMPF SE