An issue was discovered in Softing OPC UA C++ SDK before 5.70. An invalid XML element in the type dictionary makes the OPC/UA client crash due to an out-of-memory condition.
References
Link | Resource |
---|---|
https://industrial.softing.com/fileadmin/sof-files/pdf/ia/support/Security_Bulletin_CVE-2021-42262.pdf | Vendor Advisory |
https://industrial.softing.com/us/solutions/opc-and-opc-ua.html | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
18 Mar 2022, 20:41
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-119 | |
CVSS |
v2 : v3 : |
v2 : 4.0
v3 : 6.5 |
CPE | cpe:2.3:a:softing:opc_ua_c\+\+_software_development_kit:*:*:*:*:*:*:*:* cpe:2.3:a:softing:secure_integration_server:*:*:*:*:*:*:*:* cpe:2.3:a:softing:datafeed_opc_suite:*:*:*:*:*:*:*:* |
|
References | (MISC) https://industrial.softing.com/fileadmin/sof-files/pdf/ia/support/Security_Bulletin_CVE-2021-42262.pdf - Vendor Advisory | |
References | (MISC) https://industrial.softing.com/us/solutions/opc-and-opc-ua.html - Vendor Advisory |
11 Mar 2022, 23:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-03-11 23:15
Updated : 2024-02-04 22:29
NVD link : CVE-2021-42262
Mitre link : CVE-2021-42262
CVE.ORG link : CVE-2021-42262
JSON object : View
Products Affected
softing
- secure_integration_server
- opc_ua_c\+\+_software_development_kit
- datafeed_opc_suite
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer