← Back to home
ICSA-12-265-01  ·  Published 2025-06-19  ·  View on CISA ICS-CERT ↗

Emerson DeltaV Buffer Overflow

CVSS 5.0 MEDIUM

CVEs (1)

Remediations

  • Emerson has created a hotfix that resolves this vulnerability.
  • Emerson has distributed a notification in KBA NK-1200-0170 to customers who own a DeltaV Control System: the notification provides details of the vulnerability, recommended mitigations, and instructions on obtaining and installing the hotfix. Customers using DeltaV V9.3.1 and V10.3 are recommended to update to V10.3.1 as there is no hotfix for those versions.

Affected Vendors

Emerson

Affected Products (4)

Emerson · DeltaV V9.3.1
Emerson · DeltaV V10.3.1
Emerson · DeltaV V11.3
Emerson · DeltaV V11.3.1

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more