{"document":{"acknowledgments":[{"organization":"CERT@VDE","summary":"coordination","urls":["https://certvde.com"]}],"category":"csaf_security_advisory","csaf_version":"2.0","distribution":{"tlp":{"label":"WHITE","url":"https://www.first.org/tlp/"}},"lang":"en-GB","notes":[{"category":"summary","text":"TruControl laser control software prior to version 1.60.0 uses an OpenSSH server version affected by CVE-2024-6387. The affected OpenSSH Server version could potentially lead to a remote code execution.","title":"Summary"},{"category":"description","text":"To be able to exploit this vulnerability the attacker first needs to gain any kind of network access to the system.\nThe remote code execution vulnerability enables the attacker a potential access into the laser control system which could lead to following possible impacts/damages to the system:    \n* Data loss in the laser control   \n* Standstill of production   \nDamage by change of the laser control\nSafety is not affected since it is controlled by an independent electromechanical safety mechanism.","title":"Impact"},{"category":"description","text":"Update to the newest release 4.04.0 of the TruControl software version   \nPlease contact your service partner (service.tls@trumpf.com) for instructions on how to get automatically informed for the newest major release 4.04.0 of the TruControl software version ","title":"Remediation"},{"category":"general","text":"Securing the production network. \nIn case of doubt please disconnect the laser completely from network.","title":"General Recommendation"}],"publisher":{"category":"vendor","contact_details":"product.security@trumpf.com","name":"Trumpf SE + Co. KG","namespace":"https://www.trumpf.com"},"references":[{"category":"external","summary":"TRUMPF Laser SE - PSIRT","url":"https://www.trumpf.com/en_US/meta/security-with-trumpf/security-advisories/"},{"category":"external","summary":"CERT@VDE Security Advisories for TRUMPF Laser","url":"https://certvde.com/en/advisories/vendor/trumpf-laser/"},{"category":"self","summary":"VDE-2024-040: Multiple TRUMPF products prone to regreSSHion OpenSSH server vulnerabilities - HTML","url":"https://certvde.com/en/advisories/VDE-2024-040/"},{"category":"self","summary":"VDE-2024-040: Multiple TRUMPF products prone to regreSSHion OpenSSH server vulnerabilities - CSAF","url":"https://trumpf.csaf-tp.certvde.com/.well-known/csaf/white/2024/vde-2024-040.json"}],"title":"Multiple TRUMPF products prone to regreSSHion OpenSSH server vulnerabilities","tracking":{"aliases":["VDE-2024-040"],"current_release_date":"2025-04-10T13:00:00.000Z","generator":{"date":"2024-11-14T11:10:05.793Z","engine":{"name":"Secvisogram","version":"2.5.13"}},"id":"VDE-2024-040","initial_release_date":"2024-06-25T10:00:00.000Z","revision_history":[{"date":"2024-06-25T10:00:00.000Z","number":"1","summary":"Initial revision."},{"date":"2024-11-06T11:27:01.000Z","number":"2","summary":"Fix: correct certvde domain, added self-reference"},{"date":"2024-11-14T12:00:00.000Z","number":"3","summary":"removed issuing authority as it is the same as the publisher"},{"date":"2025-04-10T13:00:00.000Z","number":"4","summary":"Fixed CSAF self-reference URL"}],"status":"final","version":"4"}},"product_tree":{"branches":[{"branches":[{"branches":[{"category":"product_name","name":"TruPulse","product":{"name":"TruPulse","product_id":"CSAFPID-11001"}},{"category":"product_name","name":"TruDisk","product":{"name":"TruDisk","product_id":"CSAFPID-11002"}},{"category":"product_name","name":"TruDiode","product":{"name":"TruDiode","product_id":"CSAFPID-11003"}},{"category":"product_name","name":"TruMicro 2000","product":{"name":"TruMicro 2000","product_id":"CSAFPID-11004"}},{"category":"product_name","name":"TruMicro 5000","product":{"name":"TruMicro 5000","product_id":"CSAFPID-11005"}},{"category":"product_name","name":"TruMicro 6000","product":{"name":"TruMicro 6000","product_id":"CSAFPID-11006"}},{"category":"product_name","name":"TruMicro 7000","product":{"name":"TruMicro 7000","product_id":"CSAFPID-11007"}},{"category":"product_name","name":"TruMicro 8000","product":{"name":"TruMicro 8000","product_id":"CSAFPID-11008"}},{"category":"product_name","name":"TruMicro 9000","product":{"name":"TruMicro 9000","product_id":"CSAFPID-11009"}},{"category":"product_name","name":"redpowerDirect","product":{"name":"redpowerDirect","product_id":"CSAFPID-11010"}}],"category":"product_family","name":"Hardware"},{"branches":[{"branches":[{"category":"product_version_range","name":"<1.60.0","product":{"name":"Firmware TruControl <1.60.0","product_id":"CSAFPID-51002"}},{"category":"product_version","name":"1.60.0","product":{"name":"Firmware TruControl 1.60.0","product_id":"CSAFPID-52001"}}],"category":"product_name","name":"TruControl"}],"category":"product_family","name":"Firmware"}],"category":"vendor","name":"TRUMPF Laser SE"}],"product_groups":[{"group_id":"CSAFGID-61001","product_ids":["CSAFPID-31001","CSAFPID-31002","CSAFPID-31003","CSAFPID-31004","CSAFPID-31005","CSAFPID-31006","CSAFPID-31007","CSAFPID-31008","CSAFPID-31009","CSAFPID-31010"],"summary":"Affected products"},{"group_id":"CSAFGID-62001","product_ids":["CSAFPID-32001","CSAFPID-32002","CSAFPID-32003","CSAFPID-32004","CSAFPID-32005","CSAFPID-32006","CSAFPID-32007","CSAFPID-32008","CSAFPID-32009","CSAFPID-32010"],"summary":"Fixed products"}],"relationships":[{"category":"installed_on","full_product_name":{"name":"Firmware TruControl <1.60.0 installed on TruPulse","product_id":"CSAFPID-31001"},"product_reference":"CSAFPID-51002","relates_to_product_reference":"CSAFPID-11001"},{"category":"installed_on","full_product_name":{"name":"Firmware TruControl <1.60.0 installed on TruDisk","product_id":"CSAFPID-31002"},"product_reference":"CSAFPID-51002","relates_to_product_reference":"CSAFPID-11002"},{"category":"installed_on","full_product_name":{"name":"Firmware TruControl <1.60.0 installed on TruDiode","product_id":"CSAFPID-31003"},"product_reference":"CSAFPID-51002","relates_to_product_reference":"CSAFPID-11003"},{"category":"installed_on","full_product_name":{"name":"Firmware TruControl <1.60.0 installed on TruMicro 2000","product_id":"CSAFPID-31004"},"product_reference":"CSAFPID-51002","relates_to_product_reference":"CSAFPID-11004"},{"category":"installed_on","full_product_name":{"name":"Firmware TruControl <1.60.0 installed on TruMicro 5000","product_id":"CSAFPID-31005"},"product_reference":"CSAFPID-51002","relates_to_product_reference":"CSAFPID-11005"},{"category":"installed_on","full_product_name":{"name":"Firmware TruControl <1.60.0 installed on TruMicro 6000","product_id":"CSAFPID-31006"},"product_reference":"CSAFPID-51002","relates_to_product_reference":"CSAFPID-11006"},{"category":"installed_on","full_product_name":{"name":"Firmware TruControl <1.60.0 installed on TruMicro 7000","product_id":"CSAFPID-31007"},"product_reference":"CSAFPID-51002","relates_to_product_reference":"CSAFPID-11007"},{"category":"installed_on","full_product_name":{"name":"Firmware TruControl <1.60.0 installed on TruMicro 8000","product_id":"CSAFPID-31008"},"product_reference":"CSAFPID-51002","relates_to_product_reference":"CSAFPID-11008"},{"category":"installed_on","full_product_name":{"name":"Firmware TruControl <1.60.0 installed on TruMicro 9000","product_id":"CSAFPID-31009"},"product_reference":"CSAFPID-51002","relates_to_product_reference":"CSAFPID-11009"},{"category":"installed_on","full_product_name":{"name":"Firmware TruControl <1.60.0 installed on redpowerDirect","product_id":"CSAFPID-31010"},"product_reference":"CSAFPID-51002","relates_to_product_reference":"CSAFPID-11010"},{"category":"installed_on","full_product_name":{"name":"Firmware TruControl 1.60.0 installed on TruPulse","product_id":"CSAFPID-32001"},"product_reference":"CSAFPID-52001","relates_to_product_reference":"CSAFPID-11001"},{"category":"installed_on","full_product_name":{"name":"Firmware TruControl 1.60.0 installed on TruDisk","product_id":"CSAFPID-32002"},"product_reference":"CSAFPID-52001","relates_to_product_reference":"CSAFPID-11002"},{"category":"installed_on","full_product_name":{"name":"Firmware TruControl 1.60.0 installed on TruDiode","product_id":"CSAFPID-32003"},"product_reference":"CSAFPID-52001","relates_to_product_reference":"CSAFPID-11003"},{"category":"installed_on","full_product_name":{"name":"Firmware TruControl 1.60.0 installed on TruMicro 2000","product_id":"CSAFPID-32004"},"product_reference":"CSAFPID-52001","relates_to_product_reference":"CSAFPID-11004"},{"category":"installed_on","full_product_name":{"name":"Firmware TruControl 1.60.0 installed on TruMicro 5000","product_id":"CSAFPID-32005"},"product_reference":"CSAFPID-52001","relates_to_product_reference":"CSAFPID-11005"},{"category":"installed_on","full_product_name":{"name":"Firmware TruControl 1.60.0 installed on TruMicro 6000","product_id":"CSAFPID-32006"},"product_reference":"CSAFPID-52001","relates_to_product_reference":"CSAFPID-11006"},{"category":"installed_on","full_product_name":{"name":"Firmware TruControl 1.60.0 installed on TruMicro 7000","product_id":"CSAFPID-32007"},"product_reference":"CSAFPID-52001","relates_to_product_reference":"CSAFPID-11007"},{"category":"installed_on","full_product_name":{"name":"Firmware TruControl 1.60.0 installed on TruMicro 8000","product_id":"CSAFPID-32008"},"product_reference":"CSAFPID-52001","relates_to_product_reference":"CSAFPID-11008"},{"category":"installed_on","full_product_name":{"name":"Firmware TruControl 1.60.0 installed on TruMicro 9000","product_id":"CSAFPID-32009"},"product_reference":"CSAFPID-52001","relates_to_product_reference":"CSAFPID-11009"},{"category":"installed_on","full_product_name":{"name":"Firmware TruControl 1.60.0 installed on redpowerDirect","product_id":"CSAFPID-32010"},"product_reference":"CSAFPID-52001","relates_to_product_reference":"CSAFPID-11010"}]},"vulnerabilities":[{"acknowledgments":[{"organization":"Qualys Research Labs"}],"cve":"CVE-2024-6387","cwe":{"id":"CWE-364","name":"Signal Handler Race Condition"},"notes":[{"audience":"all","category":"description","text":"A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead to sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able to trigger it by failing to authenticate within a set time period.","title":"Vulnerability Description"},{"audience":"operational management and system administrators","category":"details","text":"The affected OpenSSH Server version could potentially lead to a remote code execution.","title":"Vulnerability characterisation"}],"product_status":{"fixed":["CSAFPID-32001","CSAFPID-32002","CSAFPID-32003","CSAFPID-32004","CSAFPID-32005","CSAFPID-32006","CSAFPID-32007","CSAFPID-32008","CSAFPID-32009","CSAFPID-32010"],"known_affected":["CSAFPID-31001","CSAFPID-31002","CSAFPID-31003","CSAFPID-31004","CSAFPID-31005","CSAFPID-31006","CSAFPID-31007","CSAFPID-31008","CSAFPID-31009","CSAFPID-31010"]},"remediations":[{"category":"vendor_fix","date":"2024-07-25T10:00:00.000Z","details":"Update to first fixed version 1.06.00 or ideally to the newest release 04.04.00","entitlements":["•\tPlease contact your service partner (service.tls@trumpf.com) for instructions on how to get automatically informed for the new major release 4.04.0 of the TruControl software version \n"],"product_ids":["CSAFPID-31001","CSAFPID-31002","CSAFPID-31003","CSAFPID-31004","CSAFPID-31005","CSAFPID-31006","CSAFPID-31007","CSAFPID-31008","CSAFPID-31009","CSAFPID-31010"],"restart_required":{"category":"system"}}],"scores":[{"cvss_v3":{"attackComplexity":"HIGH","attackVector":"NETWORK","availabilityImpact":"HIGH","baseScore":8.1,"baseSeverity":"HIGH","confidentialityImpact":"HIGH","environmentalScore":8.1,"environmentalSeverity":"HIGH","integrityImpact":"HIGH","privilegesRequired":"NONE","scope":"UNCHANGED","temporalScore":8.1,"temporalSeverity":"HIGH","userInteraction":"NONE","vectorString":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","version":"3.1"},"products":["CSAFPID-31001","CSAFPID-31002","CSAFPID-31003","CSAFPID-31004","CSAFPID-31005","CSAFPID-31006","CSAFPID-31007","CSAFPID-31008","CSAFPID-31009","CSAFPID-31010"]}],"title":"CVE-2024-6387"}]}