Azeotech DAQFactory NETB Datagram Parsing Stack Buffer Overflow Vulnerability

Summary
This host is installed with Azeotech DAQFactory (HMI/SCADA) and is prone to denial of service vulnerability.
Impact
Successful exploitation may allow remote attackers to execute arbitrary code on the system or cause denial of service condition. Impact Level: System/Application
Solution
Update to version 5.86 or later, For updates refer to http://www.azeotech.com/daqfactory.php
Insight
The flaw is due to an error while parsing NETB datagrams. Which can be exploited to cause a buffer overflow by sending a crafted NETB packet to port 20034/UDP.
Affected
Azeotech DAQFactory 5.85 build 1853 and earlier.
References