PT-2026-67773 · Open62541 · Open62541
CVSS v3.1
5.3
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L |
Name of the Vulnerable Software and Affected Versions
open62541 versions prior to 1.5.6
Description
A heap-based buffer overflow occurs in the
UA Client readNodeClassAttribute() function within the src/client/ua client highlevel.c file. This issue requires local access to be exploited.Recommendations
Update to a version newer than 1.5.5.
As a temporary workaround, restrict access to the
UA Client readNodeClassAttribute() function to minimize the risk of exploitation.Exploit
Fix
Heap Based Buffer Overflow
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Open62541