New Vulnerabilities in Treck TCP/IP Stack
Siemens is aware of the new security vulnerabilities in the Treck TCP/IP stack, disclosed on 2020-12-08 on Treck, Inc.'s advisory page.
No Siemens product is known to use Treck Inc.'s TCP/IP stack, or otherwise be affected by the reported vulnerabilities.
Note that Siemens products and systems might interact with products from other manufacturers which are affected by the reported vulnerabilities. In such cases Siemens recommends that owners of operational infrastructures verify if these products are affected and evaluate the potential impact of the Ripple20 vulnerabilities. Siemens ProductCERT may release additional information via specific Security Advisories.