CVE-2022-29866
EPSS 0.80%Uncontrolled Resource Consumption in OPCFoundation.NetStandard.Opc.Ua.Core
Published: 6/17/2022Modified: 12/1/2024
Description
A vulnerability was discovered in the OPC UA .NET Standard Stack that allows a malicious client to trigger a stack overflow exception in a server that exposes an HTTPS endpoint.
Affected packages (1)
- NuGet/OPCFoundation.NetStandard.Opc.Ua.Corefrom 0, < 1.4.368.58
References (4)
- ADVISORYhttps://nvd.nist.gov/vuln/detail/CVE-2022-29866
- PATCHhttps://github.com/OPCFoundation/UA-.NETStandard
- WEBhttps://files.opcfoundation.org/SecurityBulletins/OPC%20Foundation%20Security%20Bulletin%20CVE-2022-29866.pdf
- WEBhttps://github.com/OPCFoundation/UA-.NETStandard/security/advisories/GHSA-6fp8-cxc9-4fr9