### [CVE-2019-19300](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19300) ![](https://img.shields.io/static/v1?label=Product&message=Development%2FEvaluation%20Kits%20for%20PROFINET%20IO%3A%20EK-ERTEC%20200&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=Development%2FEvaluation%20Kits%20for%20PROFINET%20IO%3A%20EK-ERTEC%20200P&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=KTK%20ATE530S&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIDOOR%20ATD430W&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIDOOR%20ATE530S%20COATED&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIDOOR%20ATE531S&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20ET%20200S%20IM151-8%20PN%2FDP%20CPU&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20ET%20200S%20IM151-8F%20PN%2FDP%20CPU&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20ET%20200SP%20Open%20Controller%20CPU%201515SP%20PC%20(incl.%20SIPLUS%20variants)&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20ET%20200SP%20Open%20Controller%20CPU%201515SP%20PC2%20(incl.%20SIPLUS%20variants)&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20ET%20200pro%20IM154-8%20PN%2FDP%20CPU&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20ET%20200pro%20IM154-8F%20PN%2FDP%20CPU&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20ET%20200pro%20IM154-8FX%20PN%2FDP%20CPU&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20ET200AL%20IM157-1%20PN&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20ET200MP%20IM155-5%20PN%20HF%20(incl.%20SIPLUS%20variants)&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20ET200SP%20IM155-6%20MF%20HF&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20ET200SP%20IM155-6%20PN%20HA%20(incl.%20SIPLUS%20variants)&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20ET200SP%20IM155-6%20PN%20HF%20(incl.%20SIPLUS%20variants)&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20ET200SP%20IM155-6%20PN%2F2%20HF%20(incl.%20SIPLUS%20variants)&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20ET200SP%20IM155-6%20PN%2F3%20HF%20(incl.%20SIPLUS%20variants)&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20ET200ecoPN%2C%20AI%208xRTD%2FTC%2C%20M12-L&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20ET200ecoPN%2C%20CM%204x%20IO-Link%2C%20M12-L&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20ET200ecoPN%2C%20CM%208x%20IO-Link%2C%20M12-L&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20ET200ecoPN%2C%20DI%2016x24VDC%2C%20M12-L&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20ET200ecoPN%2C%20DI%208x24VDC%2C%20M12-L&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20ET200ecoPN%2C%20DIQ%2016x24VDC%2F2A%2C%20M12-L&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20ET200ecoPN%2C%20DQ%208x24VDC%2F0%2C5A%2C%20M12-L&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20ET200ecoPN%2C%20DQ%208x24VDC%2F2A%2C%20M12-L&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20MICRO-DRIVE%20PDC&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20PN%2FMF%20Coupler&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20PN%2FPN%20Coupler&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20S7-1200%20CPU%20family%20(incl.%20SIPLUS%20variants)&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20S7-1500%20CPU%20family%20(incl.%20related%20ET200%20CPUs%20and%20SIPLUS%20variants)&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20S7-1500%20Software%20Controller&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20S7-300%20CPU%20314C-2%20PN%2FDP&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20S7-300%20CPU%20315-2%20PN%2FDP&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20S7-300%20CPU%20315F-2%20PN%2FDP&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20S7-300%20CPU%20315T-3%20PN%2FDP&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20S7-300%20CPU%20317-2%20PN%2FDP&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20S7-300%20CPU%20317F-2%20PN%2FDP&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20S7-300%20CPU%20317T-3%20PN%2FDP&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20S7-300%20CPU%20317TF-3%20PN%2FDP&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20S7-300%20CPU%20319-3%20PN%2FDP&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20S7-300%20CPU%20319F-3%20PN%2FDP&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20S7-400%20H%20V6%20CPU%20family%20and%20below%20(incl.%20SIPLUS%20variants)&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20S7-400%20PN%2FDP%20V7%20CPU%20family%20(incl.%20SIPLUS%20variants)&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20S7-410%20V10%20CPU%20family%20(incl.%20SIPLUS%20variants)&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20S7-410%20V8%20CPU%20family%20(incl.%20SIPLUS%20variants)&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20TDC%20CP51M1&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20TDC%20CPU555&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20WinAC%20RTX%202010&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIMATIC%20WinAC%20RTX%20F%202010&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SINAMICS%20S%2FG%20Control%20Unit%20w.%20PROFINET&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIPLUS%20ET%20200S%20IM151-8%20PN%2FDP%20CPU&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIPLUS%20ET%20200S%20IM151-8F%20PN%2FDP%20CPU&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIPLUS%20NET%20PN%2FPN%20Coupler&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIPLUS%20S7-300%20CPU%20314C-2%20PN%2FDP&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIPLUS%20S7-300%20CPU%20315-2%20PN%2FDP&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIPLUS%20S7-300%20CPU%20315F-2%20PN%2FDP&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIPLUS%20S7-300%20CPU%20317-2%20PN%2FDP&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=SIPLUS%20S7-300%20CPU%20317F-2%20PN%2FDP&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=%3D%20All%20versions%20%3C%20V2.0%20&color=brighgreen) ![](https://img.shields.io/static/v1?label=Version&message=%3D%20All%20versions%20%3C%20V4.4.0%20&color=brighgreen) ![](https://img.shields.io/static/v1?label=Version&message=%3D%20All%20versions%20%3E%3D%20V4.2%20&color=brighgreen) ![](https://img.shields.io/static/v1?label=Version&message=%3D%20All%20versions%20%3E%3D%20V5.1.1%20&color=brighgreen) ![](https://img.shields.io/static/v1?label=Version&message=%3D%20All%20versions%20&color=brighgreen) ![](https://img.shields.io/static/v1?label=Version&message=0%3C%20*%20&color=brighgreen) ![](https://img.shields.io/static/v1?label=Version&message=0%3C%20V2.0%20&color=brighgreen) ![](https://img.shields.io/static/v1?label=Version&message=V5.1.1%3C%20V5.1.2%20&color=brighgreen) ![](https://img.shields.io/static/v1?label=Version&message=V5.1.1%3C%20V5.1.3%20&color=brighgreen) ![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-400%3A%20Uncontrolled%20Resource%20Consumption&color=brighgreen) ### Description A vulnerability has been identified in Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200, Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200P, KTK ATE530S, SIDOOR ATD430W, SIDOOR ATE530S COATED, SIDOOR ATE531S, SIMATIC ET 200pro IM154-8 PN/DP CPU (6ES7154-8AB01-0AB0), SIMATIC ET 200pro IM154-8F PN/DP CPU (6ES7154-8FB01-0AB0), SIMATIC ET 200pro IM154-8FX PN/DP CPU (6ES7154-8FX00-0AB0), SIMATIC ET 200S IM151-8 PN/DP CPU (6ES7151-8AB01-0AB0), SIMATIC ET 200S IM151-8F PN/DP CPU (6ES7151-8FB01-0AB0), SIMATIC ET 200SP Open Controller CPU 1515SP PC (incl. SIPLUS variants), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants), SIMATIC ET200AL IM157-1 PN, SIMATIC ET200ecoPN, AI 8xRTD/TC, M12-L (6ES7144-6JF00-0BB0), SIMATIC ET200ecoPN, CM 4x IO-Link, M12-L (6ES7148-6JE00-0BB0), SIMATIC ET200ecoPN, CM 8x IO-Link, M12-L (6ES7148-6JG00-0BB0), SIMATIC ET200ecoPN, CM 8x IO-Link, M12-L (6ES7148-6JJ00-0BB0), SIMATIC ET200ecoPN, DI 16x24VDC, M12-L (6ES7141-6BH00-0BB0), SIMATIC ET200ecoPN, DI 8x24VDC, M12-L (6ES7141-6BG00-0BB0), SIMATIC ET200ecoPN, DIQ 16x24VDC/2A, M12-L (6ES7143-6BH00-0BB0), SIMATIC ET200ecoPN, DQ 8x24VDC/0,5A, M12-L (6ES7142-6BG00-0BB0), SIMATIC ET200ecoPN, DQ 8x24VDC/2A, M12-L (6ES7142-6BR00-0BB0), SIMATIC ET200MP IM155-5 PN HF (incl. SIPLUS variants), SIMATIC ET200SP IM155-6 MF HF, SIMATIC ET200SP IM155-6 PN HA (incl. SIPLUS variants), SIMATIC ET200SP IM155-6 PN HF (incl. SIPLUS variants), SIMATIC ET200SP IM155-6 PN/2 HF (incl. SIPLUS variants), SIMATIC ET200SP IM155-6 PN/3 HF (incl. SIPLUS variants), SIMATIC MICRO-DRIVE PDC, SIMATIC PN/MF Coupler (6ES7158-3MU10-0XA0), SIMATIC PN/PN Coupler (6ES7158-3AD10-0XA0), SIMATIC S7-1200 CPU family (incl. SIPLUS variants), SIMATIC S7-1500 CPU family (incl. related ET200 CPUs and SIPLUS variants), SIMATIC S7-1500 Software Controller, SIMATIC S7-300 CPU 314C-2 PN/DP (6ES7314-6EH04-0AB0), SIMATIC S7-300 CPU 315-2 PN/DP (6ES7315-2EH14-0AB0), SIMATIC S7-300 CPU 315F-2 PN/DP (6ES7315-2FJ14-0AB0), SIMATIC S7-300 CPU 315T-3 PN/DP (6ES7315-7TJ10-0AB0), SIMATIC S7-300 CPU 317-2 PN/DP (6ES7317-2EK14-0AB0), SIMATIC S7-300 CPU 317F-2 PN/DP (6ES7317-2FK14-0AB0), SIMATIC S7-300 CPU 317T-3 PN/DP (6ES7317-7TK10-0AB0), SIMATIC S7-300 CPU 317TF-3 PN/DP (6ES7317-7UL10-0AB0), SIMATIC S7-300 CPU 319-3 PN/DP (6ES7318-3EL01-0AB0), SIMATIC S7-300 CPU 319F-3 PN/DP (6ES7318-3FL01-0AB0), SIMATIC S7-400 H V6 CPU family and below (incl. SIPLUS variants), SIMATIC S7-400 PN/DP V7 CPU family (incl. SIPLUS variants), SIMATIC S7-410 V10 CPU family (incl. SIPLUS variants), SIMATIC S7-410 V8 CPU family (incl. SIPLUS variants), SIMATIC TDC CP51M1, SIMATIC TDC CPU555, SIMATIC WinAC RTX 2010 (6ES7671-0RC08-0YA0), SIMATIC WinAC RTX F 2010 (6ES7671-1RC08-0YA0), SINAMICS S/G Control Unit w. PROFINET, SIPLUS ET 200S IM151-8 PN/DP CPU (6AG1151-8AB01-7AB0), SIPLUS ET 200S IM151-8F PN/DP CPU (6AG1151-8FB01-2AB0), SIPLUS NET PN/PN Coupler (6AG2158-3AD10-4XA0), SIPLUS S7-300 CPU 314C-2 PN/DP (6AG1314-6EH04-7AB0), SIPLUS S7-300 CPU 315-2 PN/DP (6AG1315-2EH14-7AB0), SIPLUS S7-300 CPU 315F-2 PN/DP (6AG1315-2FJ14-2AB0), SIPLUS S7-300 CPU 317-2 PN/DP (6AG1317-2EK14-7AB0), SIPLUS S7-300 CPU 317F-2 PN/DP (6AG1317-2FK14-2AB0). The Interniche-based TCP Stack can be forced to make very expensive calls for every incoming packet which can lead to a denial of service. ### POC #### Reference No PoCs from references. #### Github - https://github.com/Live-Hack-CVE/CVE-2019-19300