Siemens has announced patches for flaws in its industrial control systems discovered by independent researchers nearly a month ago, but the US government has warned that there are still reported problems with the systems.
The German engineering conglomerate was heavily criticised for its lax response after researchers at NSS Labs found the flaws in its Simatic S7-1200 micro programmable logic controller.
Siemens was accused of trying to duck the problems despite being effectively given thousands of pounds worth of free research.
However, Siemens said in a statement on its site that the company had released a firmware update for two vulnerabilities, one of which, known as a replay attack, could allow hackers to take control of the system, while the other could allow for denial-of-service (DoS) attacks.
"The latest firmware update for the S7-1200 will offer corrective action for enhancing protection against replay attacks as well as increased stability when facing the above-mentioned DoS scenario. The firmware update will be available in June," noted Siemens.
"The S7-300 and S7-400 controllers are not affected by the DoS scenario, so there is no need for any firmware update with these controllers."
The US ICS-CERT issued an update confirming the security advisory, but warned that it patches only "a portion" of the reported vulnerabilities.
"ICS-CERT has confirmed the effectiveness of this patch and continues to work with Siemens and [NSS researcher] Dillon Beresford on the other reported problems," the security organisation said.
Google already claims to carry as much as 25 per cent of global internet traffic
Oracle's 237-fix Patch Tuesday comprises patches for critical flaws in MICROS retail systems and Oracle E-Business Suite
Fusion Middleware, PeopleSoft and MySQL also patched in Oracle's latest Critical Patch Update
Hopefully, the rumoured Sony Xperia XZ Pro will be more of a looker than some of its recent offerings
Campaigners claim that 49 senators have now pledged to vote against Bill to repeal net neutrality in the US