You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
ruggedcom ros
About this tag
The ruggedcom ROS tag covers Siemens RUGGEDCOM ROS, a hardened embedded operating system for industrial switches, routers, and serial-to-Ethernet gateways. Tagged content focuses on security vulnerabilities and patching, including CVE-2025-40935, a denial-of-service flaw triggered by malformed TLS certificate uploads, and multiple other vulnerabilities affecting TLS handling, cipher selection, and access controls. Siemens has released ROS versions 5.10.0 and 5.10.1 to address these issues, with advisories urging operators to update and apply network mitigations where patching is not immediately possible. Topics include industrial network security, patch management, and mitigation strategies for critical infrastructure.
Siemens has confirmed a temporary denial‑of‑service vulnerability in a broad family of RUGGEDCOM ROS devices that can be triggered by malformed input during the TLS certificate upload procedure of the device web service; operators should treat CVE‑2025‑40935 as a patch‑now advisory and update...
Siemens has confirmed multiple serious vulnerabilities in its RUGGEDCOM ROS family that affect a wide range of industrial switches, routers and serial‑to‑Ethernet gateways, and it is urging operators to update to the newly released ROS 5.10.0 where available and apply strict network mitigations...