Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
o6 open62541 ua_client_highlevel.c UA_Client_readNodeClassAttribute heap-based overflow
Vulnerability Description
A vulnerability was found in o6 open62541 up to 1.5.5. This issue affects the function UA_Client_readNodeClassAttribute of the file src/client/ua_client_highlevel.c. Performing a manipulation results in heap-based buffer overflow. Attacking locally is a requirement. The exploit has been made public and could be used. The project closed the issue report, stating that this is not the official way to report a security vulnerability.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Vulnerability Type
堆缓冲区溢出
Vulnerability Title
Open62541 缓冲区错误漏洞
Vulnerability Description
Open62541是Open62541团队开源的一款嵌入式Web服务器中间件。 Open62541 1.5.5及之前版本存在缓冲区错误漏洞,该漏洞源于对src/client/ua_client_highlevel.c文件中的UA_Client_readNodeClassAttribute函数操作不当,可能导致堆缓冲区溢出。
CVSS Information
N/A
Vulnerability Type
N/A