VDB

SSA-285795

SSA-285795 PUBLISHED CVSS 6.5 MEDIUM

The OPC UA ANSIC Stack (also called Legacy C-Stack) was reported to crash when an unexpected OPC UA Response message status code was accessed via the synchronous Client API. The vulnerability was found in generated code of the OPC Foundation C-Stack. An unexpected status code in response message will dereference Null pointer leading to crash, ping of death (PoD). This affects a client, but it might also affect a server when it uses OpcUa_ClientApi_RegisterServer (e.g. register at LDS). A specially crafted UA server, or Man in the Middle attacker, can cause the OPC UA application to crash by sending uncertain status code in response message.

Risk Scores

CVSS 3.1
6.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H/E:P/RL:O/RC:C

Affected Products

VendorProductVersions
SiemensSIMATIC HMI Comfort Panels (incl. SIPLUS variants)
SiemensTeleControl Server Basic V3
SiemensSIMATIC NET PC Software V14
SiemensSIMATIC NET PC Software V17
SiemensSITOP Manager
SiemensSIMATIC NET PC Software V15
SiemensSIMATIC HMI Comfort Outdoor Panels (incl. SIPLUS variants)
SiemensSIMATIC NET PC Software V16
SiemensSIMATIC HMI KTP Mobile Panels KTP400F, KTP700, KTP700F, KTP900 and KTP900F

Timeline

  • May 10, 2022 CVE Published
  • Oct 10, 2023 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›