Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-32994

Опубликовано: 04 апр. 2022
Источник: nvd
CVSS3: 7.5
CVSS2: 5
EPSS Низкий

Описание

Softing OPC UA C++ SDK (Software Development Kit) versions from 5.59 to 5.64 exported library functions don't properly validate received extension objects, which may allow an attacker to crash the software by sending a variety of specially crafted packets to access several unexpected memory locations.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:softing:opc_ua_c\+\+_software_development_kit:*:*:*:*:*:*:*:*
Версия от 5.59.0 (включая) до 5.65.0 (исключая)

EPSS

Процентиль: 32%
0.00122
Низкий

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-119
CWE-119

Связанные уязвимости

CVSS3: 7.5
github
почти 4 года назад

Softing OPC UA C++ SDK (Software Development Kit) versions from 5.59 to 5.64 exported library functions don't properly validate received extension objects, which may allow an attacker to crash the software by sending a variety of specially crafted packets to access several unexpected memory locations.

EPSS

Процентиль: 32%
0.00122
Низкий

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-119
CWE-119