Rockwell Automation CompactLogix, ControlLogix, Compact GuardLogix and GuardLogix
p a href="https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-197-06.json" strong View CSAF /strong /a /p h2 Summary /h2 p strong Successful exploitation of these vulnerabilities could allow an attacker to cause a denial-of-service condition. /strong /p p The following versions of Rockwell Automation CompactLogix, ControlLogix, Compact GuardLogix and GuardLogix are affected: /p ul li CompactLogix 5370 lt;=V35.015 (CVE-2025-12011, CVE-2025-12012, CVE-2025-11698) /li li Compact GuardLogix 5370 lt;=V35.015 (CVE-2025-12011, CVE-2025-12012, CVE-2025-11698) /li li ControlLogix 5570 lt;=V35.015 (CVE-2025-12011, CVE-2025-12012, CVE-2025-11698) /li li GuardLogix 5570 lt;=V35.015 (CVE-2025-12011, CVE-2025-12012, CVE-2025-11698) /li li CompactLogix 5380 lt;=V34.012 (CVE-2025-12011, CVE-2025-12012, CVE-2025-11698) /li li CompactLogix 5380 lt;=V35.011 (CVE-2025-12011, CVE-2025-12012, CVE-2025-11698) /li li Compact GuardLogix 5380 lt;=V34.012 (CVE-2025-12011, CVE-2025-12012, CVE-2025-11698) /li li Compact GuardLogix 5380 lt;=V35.011 (CVE-2025-12011, CVE-2025-12012, CVE-2025-11698) /li li CompactLogix 5480 lt;=V34.012 (CVE-2025-12011, CVE-2025-12012, CVE-2025-11698) /li li CompactLogix 5480 lt;=V35.011 (CVE-2025-12011, CVE-2025-12012, CVE-2025-11698) /li li ControlLogix 5580 lt;=V34.012 (CVE-2025-12011, CVE-2025-12012, CVE-2025-11698) /li li ControlLogix 5580 lt;=V35.011 (CVE-2025-12011, CVE-2025-12012, CVE-2025-11698) /li li GuardLogix 5580 lt;=V34.012 (CVE-2025-12011, CVE-2025-12012, CVE-2025-11698) /li li GuardLogix 5580 lt;=V35.011 (CVE-2025-12011, CVE-2025-12012, CVE-2025-11698) /li li CompactLogix 5380 Recovery Image lt;=1.072 (CVE-2025-12011, CVE-2025-12012, CVE-2025-11698) /li li Compact GuardLogix 5380 Recovery Image lt;=1.072 (CVE-2025-12011, CVE-2025-12012, CVE-2025-11698) /li li CompactLogix 5480 Recovery Image lt;=1.072 (CVE-2025-12011, CVE-2025-12012, CVE-2025-11698) /li li ControlLogix 5580 Recovery Image lt;=1.072 (CVE-2025-12011, CVE-2025-12012, CVE-2025-11698) /li li GuardLogix 5580 Recovery Image lt;=1.072 (CVE-2025-12011, CVE-2025-12012, CVE-2025-11698) /li /ul div class="csaf-table" table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap thead tr th role="columnheader" data-tablesaw-priority="persist" CVSS /th th role="columnheader" Vendor /th th role="columnheader" Equipment /th th role="columnheader" Vulnerabilities /th /tr /thead tbody tr td v3 8.6 /td td Rockwell Automation /td td Rockwell Automation CompactLogix, ControlLogix, Compact GuardLogix and GuardLogix /td td Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') /td /tr /tbody /table /div h3 Background /h3 ul li strong Critical Infrastructure Sectors: /strong Critical Manufacturing /li li strong Countries/Areas Deployed: /strong Worldwide /li li strong Company Headquarters Location: /strong United States /li /ul hr h2 Vulnerabilities /h2 div class="csaf-accordion" p a class="csaf-accordion-toggle-all" hre
Sign in to read the full article
Create a free account to access all news, downloads, and community features
Originally published by CISA
Source: https://www.cisa.gov/news-events/ics-advisories/icsa-26-197-06
This article is shared for informational purposes. All rights belong to the original author and publisher. If you are the copyright holder and would like this content removed, please contact us.