Описание
open62541 1.5.5 contains an out-of-bounds read in the client-side function responseReadNamespacesArray() in src/client/ua_client_connect.c.
open62541 1.5.5 contains an out-of-bounds read in the client-side function responseReadNamespacesArray() in src/client/ua_client_connect.c.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2026-67857
- https://github.com/gff-cw/information/issues/9
- https://github.com/open62541/open62541/issues/8104
- https://github.com/open62541/open62541/blob/v1.5.5/examples/client_connect.c
- https://github.com/open62541/open62541/blob/v1.5.5/examples/client_connect_loop.c
- https://github.com/open62541/open62541/blob/v1.5.5/src/client/ua_client_connect.c
Связанные уязвимости
A flaw was found in open62541. A remote attacker could exploit an out-of-bounds read vulnerability in the client-side function responseReadNamespacesArray() by sending a specially crafted network packet. This could lead to a denial of service, causing the application to crash and become unavailable.
open62541 1.5.5 contains an out-of-bounds read in the client-side function responseReadNamespacesArray() in src/client/ua_client_connect.c.
open62541 1.5.5 contains an out-of-bounds read in the client-side func ...