PT-2021-22995 · Softing · Softing Industrial Automation Opc Ua C++ Sdk
Published
2021-11-10
·
Updated
2021-11-16
·
CVE-2021-40871
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Softing Industrial Automation OPC UA C++ SDK versions prior to 5.66
Description
An issue allows remote attackers to cause a denial of service (DoS) by sending crafted messages to an OPC/UA client. The client process may crash unexpectedly due to a wrong type cast and must be restarted.
Recommendations
For versions prior to 5.66, update to version 5.66 or later to resolve the issue.
Fix
Type Confusion
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Softing Industrial Automation Opc Ua C++ Sdk