VDB

SSA-321292

SSA-321292 PUBLISHED CVSS 7.5 HIGH

In OPC Foundation Local Discovery Server (LDS) before 1.04.402.463, remote attackers can cause a denial of service condition by sending carefully crafted messages that lead to access of a memory location after the end of a buffer.

Risk Scores

CVSS v3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:P/RL:O/RC:C

Affected Products

VendorProductVersions
SiemensOpenPCS 7 V9.1
SiemensSIMATIC NET PC Software V16
SiemensSIMATIC Process Historian OPC UA Server
SiemensSIMATIC NET PC Software V17
SiemensSIMATIC WinCC Unified PC Runtime V18
SiemensSIMATIC NET PC Software V15
SiemensSIMATIC WinCC Runtime Professional
SiemensSIMATIC NET PC Software V14
SiemensTeleControl Server Basic V3
SiemensSIMATIC WinCC

Timeline

  • May 10, 2022 CVE Published
  • Oct 8, 2024 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›