PT-2026-79741 · Systerel · S2Opc
CVSS v3.1
3.7
Low
| Vector | AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L |
Name of the Vulnerable Software and Affected Versions
Systerel S2OPC versions prior to 1.7.4
Description
An out-of-bounds read can be triggered remotely within the AddNodes Service component. The issue exists in the
SOPC NodeMgtHelperInternal AddVariableNodeAttributes() function located in the src/ClientServer/address space/internal/sopc node mgt helper internal.c file. This occurs when the UserAccessLevel argument is manipulated. The attack requires a high degree of complexity and is considered difficult to execute.Recommendations
Install the patch with identifier aafbd37d381b618312ebdf5ddf57027f62c14fdd for versions prior to 1.7.4.
Exploit
Fix
Buffer Overflow
Out of bounds Read
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
S2Opc