Products with Unified Automation .NET based OPC UA Client/Server SDK Bundle: Versions V3.0.7 and prior (.NET 4.5, 4.0, and 3.5 Framework versions only) are vulnerable to an uncontrolled recursion, which may allow an attacker to trigger a stack overflow.
References
Link | Resource |
---|---|
https://us-cert.cisa.gov/ics/advisories/icsa-21-133-04 | Third Party Advisory US Government Resource |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2021-05-20 07:15
Updated : 2022-10-07 12:16
NVD link : CVE-2021-27434
Mitre link : CVE-2021-27434
JSON object : View
CWE
CWE-674
Uncontrolled Recursion
Products Affected
unified-automation
- .net_based_opc_ua_client\/server_sdk
microsoft
- .net