Description
A vulnerability has been identified in RUGGEDCOM i800 (All versions), RUGGEDCOM i801 (All versions), RUGGEDCOM i802 (All versions), RUGGEDCOM i803 (All versions), RUGGEDCOM M2100 (All versions), RUGGEDCOM M2200 (All versions), RUGGEDCOM M969 (All versions), RUGGEDCOM RMC30 (All versions), RUGGEDCOM RMC8388 V4.X (All versions), RUGGEDCOM RMC8388 V5.X (All versions < V5.10.0), RUGGEDCOM RP110 (All versions), RUGGEDCOM RS1600 (All versions), RUGGEDCOM RS1600F (All versions), RUGGEDCOM RS1600T (All versions), RUGGEDCOM RS400 (All versions), RUGGEDCOM RS401 (All versions), RUGGEDCOM RS416 (All versions), RUGGEDCOM RS416P (All versions), RUGGEDCOM RS416Pv2 V4.X (All versions), RUGGEDCOM RS416Pv2 V5.X (All versions < V5.10.0), RUGGEDCOM RS416v2 V4.X (All versions), RUGGEDCOM RS416v2 V5.X (All versions < V5.10.0), RUGGEDCOM RS8000 (All versions), RUGGEDCOM RS8000A (All versions), RUGGEDCOM RS8000H (All versions), RUGGEDCOM RS8000T (All versions), RUGGEDCOM RS900 (All versions), RUGGEDCOM RS900 (32M) V4.X (All versions), RUGGEDCOM RS900 (32M) V5.X (All versions < V5.10.0), RUGGEDCOM RS900G (All versions), RUGGEDCOM RS900G (32M) V4.X (All versions), RUGGEDCOM RS900G (32M) V5.X (All versions < V5.10.0), RUGGEDCOM RS900GP (All versions), RUGGEDCOM RS900L (All versions), RUGGEDCOM RS900M-GETS-C01 (All versions), RUGGEDCOM RS900M-GETS-XX (All versions), RUGGEDCOM RS900M-STND-C01 (All versions), RUGGEDCOM RS900M-STND-XX (All versions), RUGGEDCOM RS900W (All versions), RUGGEDCOM RS910 (All versions), RUGGEDCOM RS910L (All versions), RUGGEDCOM RS910W (All versions), RUGGEDCOM RS920L (All versions), RUGGEDCOM RS920W (All versions), RUGGEDCOM RS930L (All versions), RUGGEDCOM RS930W (All versions), RUGGEDCOM RS940G (All versions), RUGGEDCOM RS969 (All versions), RUGGEDCOM RSG2100 (All versions), RUGGEDCOM RSG2100 (32M) V4.X (All versions), RUGGEDCOM RSG2100 (32M) V5.X (All versions < V5.10.0), RUGGEDCOM RSG2100P (All versions), RUGGEDCOM RSG2100P (32M) V4.X (All versions), RUGGEDCOM RSG2100P (32M) V5.X (All versions < V5.10.0), RUGGEDCOM RSG2200 (All versions), RUGGEDCOM RSG2288 V4.X (All versions), RUGGEDCOM RSG2288 V5.X (All versions < V5.10.0), RUGGEDCOM RSG2300 V4.X (All versions), RUGGEDCOM RSG2300 V5.X (All versions < V5.10.0), RUGGEDCOM RSG2300P V4.X (All versions), RUGGEDCOM RSG2300P V5.X (All versions < V5.10.0), RUGGEDCOM RSG2488 V4.X (All versions), RUGGEDCOM RSG2488 V5.X (All versions < V5.10.0), RUGGEDCOM RSG907R (All versions < V5.10.0), RUGGEDCOM RSG908C (All versions < V5.10.0), RUGGEDCOM RSG909R (All versions < V5.10.0), RUGGEDCOM RSG910C (All versions < V5.10.0), RUGGEDCOM RSG920P V4.X (All versions), RUGGEDCOM RSG920P V5.X (All versions < V5.10.0), RUGGEDCOM RSL910 (All versions < V5.10.0), RUGGEDCOM RST2228 (All versions < V5.10.0), RUGGEDCOM RST2228P (All versions < V5.10.0), RUGGEDCOM RST916C (All versions < V5.10.0), RUGGEDCOM RST916P (All versions < V5.10.0). The affected devices support the TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256 cipher suite, which uses CBC (Cipher Block Chaining) mode that is known to be vulnerable to timing attacks. This could allow an attacker to compromise the integrity and confidentiality of encrypted communications.
CVSS breakdown
Affected products
- Siemens / RUGGEDCOM i8000 – *
- Siemens / RUGGEDCOM i8010 – *
- Siemens / RUGGEDCOM i8020 – *
- Siemens / RUGGEDCOM i8030 – *
- Siemens / RUGGEDCOM M21000 – *
- Siemens / RUGGEDCOM M22000 – *
- Siemens / RUGGEDCOM M9690 – *
- Siemens / RUGGEDCOM RMC300 – *
- Siemens / RUGGEDCOM RMC8388 V4.X0 – *
- Siemens / RUGGEDCOM RMC8388 V5.X0 – V5.10.0
- Siemens / RUGGEDCOM RP1100 – *
- Siemens / RUGGEDCOM RS16000 – *
- Siemens / RUGGEDCOM RS1600F0 – *
- Siemens / RUGGEDCOM RS1600T0 – *
- Siemens / RUGGEDCOM RS4000 – *
- Siemens / RUGGEDCOM RS4010 – *
- Siemens / RUGGEDCOM RS4160 – *
- Siemens / RUGGEDCOM RS416P0 – *
- Siemens / RUGGEDCOM RS416Pv2 V4.X0 – *
- Siemens / RUGGEDCOM RS416Pv2 V5.X0 – V5.10.0
- Siemens / RUGGEDCOM RS416v2 V4.X0 – *
- Siemens / RUGGEDCOM RS416v2 V5.X0 – V5.10.0
- Siemens / RUGGEDCOM RS80000 – *
- Siemens / RUGGEDCOM RS8000A0 – *
- Siemens / RUGGEDCOM RS8000H0 – *
- Siemens / RUGGEDCOM RS8000T0 – *
- Siemens / RUGGEDCOM RS9000 – *
- Siemens / RUGGEDCOM RS900 (32M) V4.X0 – *
- Siemens / RUGGEDCOM RS900 (32M) V5.X0 – V5.10.0
- Siemens / RUGGEDCOM RS900G0 – *
- Siemens / RUGGEDCOM RS900G (32M) V4.X0 – *
- Siemens / RUGGEDCOM RS900G (32M) V5.X0 – V5.10.0
- Siemens / RUGGEDCOM RS900GP0 – *
- Siemens / RUGGEDCOM RS900L0 – *
- Siemens / RUGGEDCOM RS900M-GETS-C010 – *
- Siemens / RUGGEDCOM RS900M-GETS-XX0 – *
- Siemens / RUGGEDCOM RS900M-STND-C010 – *
- Siemens / RUGGEDCOM RS900M-STND-XX0 – *
- Siemens / RUGGEDCOM RS900W0 – *
- Siemens / RUGGEDCOM RS9100 – *
- Siemens / RUGGEDCOM RS910L0 – *
- Siemens / RUGGEDCOM RS910W0 – *
- Siemens / RUGGEDCOM RS920L0 – *
- Siemens / RUGGEDCOM RS920W0 – *
- Siemens / RUGGEDCOM RS930L0 – *
- Siemens / RUGGEDCOM RS930W0 – *
- Siemens / RUGGEDCOM RS940G0 – *
- Siemens / RUGGEDCOM RS9690 – *
- Siemens / RUGGEDCOM RSG21000 – *
- Siemens / RUGGEDCOM RSG2100 (32M) V4.X0 – *
- Siemens / RUGGEDCOM RSG2100 (32M) V5.X0 – V5.10.0
- Siemens / RUGGEDCOM RSG2100P0 – *
- Siemens / RUGGEDCOM RSG2100P (32M) V4.X0 – *
- Siemens / RUGGEDCOM RSG2100P (32M) V5.X0 – V5.10.0
- Siemens / RUGGEDCOM RSG22000 – *
- Siemens / RUGGEDCOM RSG2288 V4.X0 – *
- Siemens / RUGGEDCOM RSG2288 V5.X0 – V5.10.0
- Siemens / RUGGEDCOM RSG2300P V4.X0 – *
- Siemens / RUGGEDCOM RSG2300P V5.X0 – V5.10.0
- Siemens / RUGGEDCOM RSG2300 V4.X0 – *
- Siemens / RUGGEDCOM RSG2300 V5.X0 – V5.10.0
- Siemens / RUGGEDCOM RSG2488 V4.X0 – *
- Siemens / RUGGEDCOM RSG2488 V5.X0 – V5.10.0
- Siemens / RUGGEDCOM RSG907R0 – V5.10.0
- Siemens / RUGGEDCOM RSG908C0 – V5.10.0
- Siemens / RUGGEDCOM RSG909R0 – V5.10.0
- Siemens / RUGGEDCOM RSG910C0 – V5.10.0
- Siemens / RUGGEDCOM RSG920P V4.X0 – *
- Siemens / RUGGEDCOM RSG920P V5.X0 – V5.10.0
- Siemens / RUGGEDCOM RSL9100 – V5.10.0
- Siemens / RUGGEDCOM RST22280 – V5.10.0
- Siemens / RUGGEDCOM RST2228P0 – V5.10.0
- Siemens / RUGGEDCOM RST916C0 – V5.10.0
- Siemens / RUGGEDCOM RST916P0 – V5.10.0