GE has released a fix for a vulnerability in a library that s used in several of its products deployed in critical infrastructure areas. The flaw in the HART Device Type Manager library could allow an attacker to crash affected applications or run arbitrary code. The vulnerability in the DTM library affects four of the GE products, as well as one product manufactured by MACTek. The affected products are:.GE’s Bullet DTM 1.00.0,.GE S SVi1000 Positioner DTM.1, and GE s 12400 Level Transmitter DTM 2.1.
Source: https://threatpost.com/ge-fixes-buffer-overflow-bug-in-dtm-library/111817/