Описание
The package opcua from 0.0.0 are vulnerable to Denial of Service (DoS) via the ExtensionObjects and Variants objects, when it allows unlimited nesting levels, which could result in a stack overflow even if the message size is less than the maximum allowed.
Ссылки
- Third Party Advisory
- PatchThird Party Advisory
- PatchThird Party Advisory
- Third Party Advisory
- PatchThird Party Advisory
- PatchThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 0.0.0 (включая)
cpe:2.3:a:opcua_project:opcua:*:*:*:*:*:rust:*:*
EPSS
Процентиль: 68%
0.00579
Низкий
7.5 High
CVSS3
Дефекты
CWE-787
Связанные уязвимости
EPSS
Процентиль: 68%
0.00579
Низкий
7.5 High
CVSS3
Дефекты
CWE-787