Operating Instructions

5
18 | 20
A6V13229131_en_a_51
5 Other fixes related to Cybersecurity
Service
Request ID
PCR ID
Summary
N/A
1668643
[SVM] Apache Log4j 2.x ≤ 2.16.0 - Remote Denial of Service Vulnerability
- 2.17.0
N/A
1590545
[SVM] Siemens Automation License Manager (ALM) - Data Manipulation
Vulnerability
N/A
1590546
[SVM] Siemens Automation License Manager 5, 6 - Privilege Escalation
Vulnerability - SSA-388646
N/A
1590547
[SVM] Siemens Automation License Manager (ALM) - Remote Denial of
Service Vulnerability
N/A
1590548
[SVM] Siemens Automation License Manager (ALM) 5, 6 - Remote
Denial of Service Vulnerability - SSA-158827
5.1 Note for Apache Log4j Vulnerability
This Quality Update includes the fix for the above vulnerability (PCR ID 1668643)
mentioned in
https://support.industry.siemens.com/cs/us/en/view/109805562
Therefore, after installation of this QU, there is no need to take any additional
patching or workaround.
5.2 Open Issues
Service Request ID
PCR ID
Summary
1-6467412171
1648217
S7 driver blocked in case #COM
The fixes for this issue will be officially provided in V5.1 QU2 and with a dedicated
patch earlier than V5.1 QU2 as soon as available.