Uncontrolled Resource Consumption in OPC UA .NET Standard Reference Server
High severity
GitHub Reviewed
Published
May 4, 2023
in
OPCFoundation/UA-.NETStandard
•
Updated May 8, 2024
Package
Affected versions
< 1.4.371.86
Patched versions
1.4.371.86
Description
Published to the GitHub Advisory Database
May 5, 2023
Reviewed
May 5, 2023
Published by the National Vulnerability Database
May 7, 2024
Last updated
May 8, 2024
This security update resolves a vulnerability in the OPC UA .NET Standard Reference Server that allows
remote attackers to send malicious requests that consume all memory available to the server.
https://files.opcfoundation.org/SecurityBulletins/OPC%20Foundation%20Security%20Bulletin%20CVE-2023-27321.pdf
References